Permissions
Permissions define the set of actions that users can perform with the data that is accessible to them (e.g., download, edit, view).
Permission Flags
User permissions are achieved through a set of fine-grained flags that team administrators can use to manage what actions users can perform with the data they can access. Permissions are divided into several categories of privileges that span actions at team level, image level, folder level, and file level.
Team Permissions
The following flags govern team administration.
| Flag | Description |
|---|---|
| Manage team | Allows a user to edit the Team Settings. |
| Manage users | Allows a user to view, edit, create or delete Users. |
| Manage roles | Allows a user to view, edit, create or delete Data Groups and Roles. |
| Manage fields | Allows a user to view, edit, create or delete Fields and Field Sets. |
| Manage report templates | Allows a user to view, edit, create or delete Report Templates. |
| Manage assignment rules | Allows a user to view, edit, create or delete assignment rules for cases. |
| Manage uploaded files | Allows a user to view or create unsorted uploads. Note: this also requires the Files->Upload permission flag. |
| Manage policies | Allows a user to view, edit, create or delete policies. |
Image Permissions
The following flags govern all items in the Repository that are detected as a supported image format. These entries are treated as images and given the Image type.
| Flag | Description |
|---|---|
| View | Allows a user to view an image and its metadata including fields, snapshots, overlays. |
| Download | Allows a user to download an image or attachment. Note: this also requires the "Images->View" and Protected Information->View slide labels permission flags. |
| Edit metadata | Allows a user to edit image-level Fields and descriptions, overlays, snapshots, rotations, and to move and copy images. Note: this also requires the "Images->View" permission flag. |
| Manage share links | Allows a user to edit, create, or delete Share Links for images. Note: this also requires the "Images->View" permission flag. |
Folder Permissions
The following flags govern folders in the Repository and/or Cases in the Dashboard.
| Flag | Description |
|---|---|
| View | Allows a user to view the Repository, its folders, and cases. |
| Create | Allows a user to create folders and cases. Note: this also requires the "Folders->View" permission flag. |
| Edit metadata | Allows user to manage folder-level Fields and descriptions, Case reports, and to move and copy folders. Note: this also requires the "Folders->View" permission flag. |
| Manage share links | Allows a user to edit, create or delete Share Links for folders. Note: this also requires the "Folders->View" permission flag. |
| Edit Name | Allows a user to rename folders. Note: this also requires the "Folders->View" permission flag. |
| Delete | Allows a user to delete folders. Note: this also requires the "Folders->View" and Files->Delete permissions flags. |
File Permissions
The following flags govern all entries in the Repository that are not detected as an image (e.g., reports, Figures, attachments). The entries are treated as files and have dedicated permissions.
| Flag | Description |
|---|---|
| View | Allows a user to view attachments, snapshots, reports and report templates. |
| Upload | Allows a user to upload files, generate reports, and link DICOM resources from a connected PACS into folders. Note: this also requires the "Files->View" permission flag. |
| Edit metadata | Allows user to edit file-level Fields and descriptions, to run type detection, and to move and copy files. Note: this also requires the "Files->View" permission flag. |
| Manage share links | Allows a user to edit, create, or delete Share Links for non-image files. Note: this also requires the "Files->View" permission flag. |
| Edit Name | Allows a user to rename files. Note: this also requires the "Files->View" permission flag. |
| Delete | Allows a user to delete all files (including image files). Note: this also requires the "Files->View" permission flag. |
Protected Information (PI) Permissions
The following flags govern access to Protected Information in images and associated metadata.
| Flag | Description |
|---|---|
| View slide labels | Allows a user to view slide labels associated with images. |
| View filenames | Allows a user to view the filenames of images and files. Note: without this permission flag, listings will show file IDs instead of filenames. |
| View protected fields | Allows a user to view field values that have been marked with the Protected Information (PI) flag. |
| Preview activities | Allows a user to access the Activities tab of the Repository information panel. |
| Export activities | Allows a user to export detailed Activity Logs. |
Image Annotation Permissions
The following flags govern image Annotations.
| Flag | Description |
|---|---|
| View shared | Allows a user to view shared Annotations on an image to which they have access. Note: this also requires the Images->View permission flag. |
| View private | Allows a user to view private Annotations of other users. Note: this also requires the Images->View permission flag. |
| Create shared | Allows a user to create, edit, and delete their own shared Annotations. Note: this also requires the Images->View permission flag. |
| Create private | Allows a user to create, edit, and delete their own private Annotations. Note: this also requires the Images->View permission flag. |
| Manage | Allows a user to edit and delete other users' Annotations that they can view (shared or private). Note: this also requires the Images->View and at least one of "Image Annotations->View shared" or "Image Annotations->View private" permission flags. |
Image Setting Permissions
The following flags govern sets of Image Settings.
| Flag | Description |
|---|---|
| View shared | Allows a user to save private image settings and see collections of image settings shared by other members of their team. |
| Share with team | Allows a user to share image settings with the rest of their team. Note: this also requires the "Image Settings->View shared" permission flag. |
| Manage | Allows a user to change the preferred and shared status of all image settings for their team. Note: this also requires the "Image Settings->Share with team" permission flag. |