Roles


While the permissions assigned to each user can be customized on a user-by-user basis, it’s convenient to use roles for expressing the collection of permissions for different user types (e.g. viewers, editors, administrators). Roles are a convenient shorthand for defining and assigning permissions to users.

System Roles

There are a number of roles that are pre-defined in the system. These roles cannot be modified and are always available. The predefined roles are as follows:

  • Administrator: has all possible permissions
  • Editor: has all permission except for team-level permissions
  • Viewer: has permissions to view and download files and metadata but cannot edit or delete any data
  • Anonymized Viewer: has all the permission of the Viewer except for the View PHI permission
To view system roles
  1. Click on the Settings Settings button from the left-hand sidebar

  2. Click on the Roles tab

  3. Look for Yes in the System Role? column of the roles table

Custom Roles [BioPharma]

To complement the builtin System Roles, you may need to create additional roles. A major benefit of custom Roles comes from inheritance; changes made to a role are inherited by all users that are associated with the role. In this sense, custom roles allow administrators to control the permissions of several users at once.

To create a new custom role
  1. Click on the Settings Settings button from the left-hand sidebar

  2. Click on the Roles tab

  3. Click on the New Role button

  4. Type a name for the new role in the Role Name field

  5. Select Permission Flags for the new role

  6. Click on the Save button to finish

Editing Custom Roles

Editing roles is a convenient way to modify the permission of all users that are associated with a particular role. For this reason, use caution when editing roles.

System roles cannot be modified.

To edit a non-system role
  1. Click on the Settings Settings button from the left-hand sidebar

  2. Click on the Roles tab

  3. Select a role from the table

  4. Click on the Edit Role button above the table

  5. Modify the role’s properties

    1. Edit the role’s name
    2. Modify the associated Permission Flags
  6. Click on the Save button to finish

Deleting Custom Roles

When a role is deleted, all the users associated with the role retain the permissions they had before the role was deleted. All users that were associated with the deleted role became users with custom permissions.

System roles cannot be deleted.

To delete a non-system role
  1. Click on the Settings Settings button from the left-hand sidebar

  2. Click on the Roles tab

  3. Select a role from the table

  4. Click on the Delete button above the table

  5. Click on the Yes button to confirm