Role Management¶
If you need to set different system access permissions for employees to achieve permission isolation, you can use the Role Management feature. Role Management provides an intuitive permission management entry point, supports customizing the permission scope for each role, creating new roles, and assigning permissions to roles to meet the permission needs of different users.
Default Roles¶
If different teams in your enterprise need to view or operate different functional modules, you can invite members to join the current workspace and assign them role permissions to control the Guance functional modules that members can access and operate.
The system provides four default member roles:
-
Owner
-
Administrator
-
Standard
-
Read-only
Default roles cannot be deleted, and their permission scope cannot be changed.
Permission Description¶
For the permission scope of different default roles, please refer to the document Permission List.
-
Owner: The owner of the current workspace, has all operation permissions within the workspace, and can adjust the role permissions of other members. If the granted role permissions include "Token View", the Authorization Review process will be triggered.
- The workspace creator is the Owner by default;
- A workspace can only have one Owner;
- The Owner cannot leave the workspace;
- The Owner can transfer permissions to a workspace member. After a successful transfer, the original Owner is downgraded to Administrator.
-
Administrator: The administrator of the current workspace, has read and write permissions for the workspace, and can adjust the role permissions of other members except the Owner;
-
Standard: A standard member of the current workspace, has read and write permissions for the workspace;
-
Read-only: A read-only member of the current workspace, can only view the data in the workspace and has no write permissions.
Custom Roles¶
In addition to the default roles, you can create new roles in Role Management and assign a permission scope to the roles to meet different permission needs.
- On the Manage > Role Management page, click "Add Role";
- Define the role name and description;
- Select the functional permission scope;
- Save.
Note
Custom roles can only be created by the Owner or Administrator.
Manage Roles¶
You can perform the following operations on custom roles:
- Export the permissions of all roles as a list;
- Edit and adjust the permissions of a role;
- If the role is not associated with any member account, it can be deleted;
- Clone an existing role to create a new role;
- Based on the permissions of an existing role, cloning a role can reduce operational steps, quickly add or remove permissions, and create a role.
- Click any custom role to view its details, including the role name, creation/update time, creator/updater, description, and role permissions;
- Click the edit button next to the role name at the top to modify the role permissions;
- In the role list, you can turn on the "Show only enabled permissions" switch.
Permission Change Review¶
When setting role permissions for workspace members, if the granted role permissions include "Token View", the system will send verification information to the Guance Billing Center and initiate a permission change review process.
- If the Billing Center accepts the verification, the permission change is successful;
- If the Billing Center rejects the verification, the permission change fails, and the original role permissions are maintained;
- If the Billing Center does not review the request, you can modify the member's role to another one. After successful modification, the original permission change review request becomes invalid.
Warning
- Currently, only the Owner and Administrator have the "Token View" permission. If a Commercial Plan workspace member needs to be promoted to Administrator, they need to go to the Billing Center for review;
- Free Plan workspace members can be directly promoted to Administrator without needing review from the Billing Center.
Commercial Plan Promotion to Administrator¶
- Go to Manage > Member Management;
- Select the member who needs to be upgraded to Administrator;
- Click the Edit button on the right, and in the pop-up dialog, select Administrator;
- Confirm.
The system only allows the Owner and Administrator roles to grant Administrator permissions to current workspace members. Only the Owner role can have the Administrator permission approved in the Billing Center.
If you are an Administrator of the current workspace and need to promote a member, you need to notify the Guance Billing Center administrator to log in to the Billing Center to perform the operation;
If you are the Owner of the current workspace, you can directly click Go to Billing Center for Review to access the Guance Billing Center for operation without logging in.
In the member management list, you can view all members whose Administrator role has not been approved. Click the icon next to the member's role, and then click Go to Billing Center in the prompt dialog to proceed with the review.
Permission List¶
You can set permissions for custom roles within the workspace.
For more details, please refer to the document Permission List.




