Permissions


Permissions define the set of actions that users can perform with the data that is accessible to them (e.g., download, edit, view).

Permission Flags

User permissions are achieved through a set of fine-grained flags that team administrators can use to manage what actions users can perform with the data they can access. Permissions are divided into several categories of privileges that span actions at team level, image level, folder level, and file level.

All entries in the Repository that are detected as a supported image format are treated as an "Image" type and have dedicated permissions flags. All other entries in the Repository (e.g., reports, Figures, attachments) are treated as "Files" and also have dedicated permissions.

Team Permissions

The following flags govern team administration.

FlagDescription
Manage teamAllows a user to edit the Team Settings.
Manage usersAllows a user to view, edit, create or delete Users.
Manage rolesAllows a user to view, edit, create or delete Data Groups and Roles.
Manage fieldsAllows a user to view, edit, create or delete Fields and Field Sets.
Manage report templatesAllows a user to view, edit, create or delete Report Templates.
Manage assignment rulesAllows a user to view, edit, create or delete assignment rules for cases.
Manage uploaded filesAllows a user to view or create unsorted uploads.
Note: this also requires the Files->Upload permission flag.
Manage policiesAllows a user to view, edit, create or delete policies.

Image Permissions

The following flags govern all items in the Repository that are detected as a supported image format. These entries are treated as images and given the Image type.

FlagDescription
ViewAllows a user to view an image and its metadata including fields, snapshots, overlays.
DownloadAllows a user to download an image or attachment.
Note: this also requires the "Images->View" and Protected Information->View slide labels permission flags.
Edit metadataAllows a user to edit image-level Fields and descriptions, overlays, snapshots, rotations, and to move and copy images.
Note: this also requires the "Images->View" permission flag.
Manage share linksAllows a user to edit, create, or delete Share Links for images.
Note: this also requires the "Images->View" permission flag.

Folder Permissions

The following flags govern folders in the Repository and/or Cases in the Dashboard.

FlagDescription
ViewAllows a user to view the Repository, its folders, and cases.
CreateAllows a user to create folders and cases.
Note: this also requires the "Folders->View" permission flag.
Edit metadataAllows user to manage folder-level Fields and descriptions, Case reports, and to move and copy folders.
Note: this also requires the "Folders->View" permission flag.
Manage share linksAllows a user to edit, create or delete Share Links for folders.
Note: this also requires the "Folders->View" permission flag.
Edit NameAllows a user to rename folders.
Note: this also requires the "Folders->View" permission flag.
DeleteAllows a user to delete folders.
Note: this also requires the "Folders->View" and Files->Delete permissions flags.

File Permissions

The following flags govern all entries in the Repository that are not detected as an image (e.g., reports, Figures, attachments). The entries are treated as files and have dedicated permissions.

FlagDescription
ViewAllows a user to view attachments, snapshots, reports and report templates.
UploadAllows a user to upload files, generate reports, and link DICOM resources from a connected PACS into folders.
Note: this also requires the "Files->View" permission flag.
Edit metadataAllows user to edit file-level Fields and descriptions, to run type detection, and to move and copy files.
Note: this also requires the "Files->View" permission flag.
Manage share linksAllows a user to edit, create, or delete Share Links for non-image files.
Note: this also requires the "Files->View" permission flag.
Edit NameAllows a user to rename files.
Note: this also requires the "Files->View" permission flag.
DeleteAllows a user to delete all files (including image files).
Note: this also requires the "Files->View" permission flag.

Protected Information (PI) Permissions

The following flags govern access to Protected Information in images and associated metadata.

FlagDescription
View slide labelsAllows a user to view slide labels associated with images.
View filenamesAllows a user to view the filenames of images and files.
Note: without this permission flag, listings will show file IDs instead of filenames.
View protected fieldsAllows a user to view field values that have been marked with the Protected Information (PI) flag.
Preview activitiesAllows a user to access the Activities tab of the Repository information panel.
Export activitiesAllows a user to export detailed Activity Logs.

Image Annotation Permissions

The following flags govern image Annotations.

FlagDescription
View sharedAllows a user to view shared Annotations on an image to which they have access.
Note: this also requires the Images->View permission flag.
View privateAllows a user to view private Annotations of other users.
Note: this also requires the Images->View permission flag.
Create sharedAllows a user to create, edit, and delete their own shared Annotations.
Note: this also requires the Images->View permission flag.
Create privateAllows a user to create, edit, and delete their own private Annotations.
Note: this also requires the Images->View permission flag.
ManageAllows a user to edit and delete other users' Annotations that they can view (shared or private).
Note: this also requires the Images->View and at least one of "Image Annotations->View shared" or "Image Annotations->View private" permission flags.

Image Setting Permissions

The following flags govern sets of Image Settings.

FlagDescription
View sharedAllows a user to save private image settings and see collections of image settings shared by other members of their team.
Share with teamAllows a user to share image settings with the rest of their team.
Note: this also requires the "Image Settings->View shared" permission flag.
ManageAllows a user to change the preferred and shared status of all image settings for their team.
Note: this also requires the "Image Settings->Share with team" permission flag.