Roles & permissions

Access is set per permission (access to a menu or action). A role is a set of permissions, managed in Users → Roles.

Permission list

KeyDescriptionMenu
dashboard.viewView the dashboardDashboard
interaction.viewView the Interaction menuInteraction
interaction.replyReply to conversations (attachments & quick replies)Interaction
interaction.manageChange status, category, labels, tags, notes; assignInteraction
interaction.escalateCreated an escalation ticketInteraction
ticket.view_assignedView tickets they follow or are assigned toTicket
ticket.view_allView all workspace ticketsTicket
ticket.manageChange ticket status/priority, add/remove participantsTicket
report.viewView the Reports menuReports
report.exportExport CSVReports
ai.useUse Summarize & Draft reply (Pro only)AI
settings.channelsConnect/disconnect Threads accountsThreads channels
settings.master_dataManage categories, labels, tags, quick repliesMaster data
settings.membersInvite members, change roles, deactivate membersUsers
settings.rolesManage rolesUsers
settings.billingPlan, invoices & paymentsPlan & billing
settings.auditView the workspace audit logAudit log
settings.workspaceGeneral settings & workspace profileSettings
settings.apiManage API keys (Pro only)Settings

Default roles

Created automatically when a workspace is created. All except Owner can be edited, duplicated, or deleted (when not in use).

RolePermissions
OwnerAll permissions. Only the workspace owner has this role; it can't be changed.
LeaderView the dashboard, View the Interaction menu, Reply to conversations (attachments & quick replies), Change status, category, labels, tags, notes; assign, Create escalation tickets, View all workspace tickets, Change ticket status/priority, add/remove participants, View the Reports menu, Export CSV, Use Summarize & Draft reply, Manage categories, labels, tags, quick replies
Tier 1 (Agent Interaction)View the dashboard, View the Interaction menu, Reply to conversations (attachments & quick replies), Change status, category, labels, tags, notes; assign, Create escalation tickets, Use Summarize & Draft reply
Tier 2 (Agent Tiket)View tickets they follow or are assigned to

Threads account access

Besides the role, each member can be limited to specific Threads accounts ("All accounts" or selected accounts). Conversations from other accounts don't appear anywhere for that member: Interaction, Dashboard, Reports, notifications, and the ticket list (unless they're a participant in the ticket).

Example setups

A shop with one admin and one warehouse team

An agency managing several client accounts

Security rules