Roles and permissions
Chatevo organizations have three dashboard roles. Every teammate has exactly one role per organization.
Role summary
Section titled “Role summary”| Capability | admin | editor | viewer |
|---|---|---|---|
| View dashboard & analytics | ✓ | ✓ | ✓ |
| View assistants, KBs, tools | ✓ | ✓ | ✓ |
| Test assistants in editor | ✓ | ✓ | ✓ |
| Create/edit assistants | ✓ | ✓ | — |
| Manage knowledge bases & documents | ✓ | ✓ | — |
| Create/edit tools | ✓ | ✓ | — |
| Manage credentials vault | ✓ | — | — |
| Create/edit deployments (widget, API) | ✓ | ✓ | — |
| Domain allowlist & embed settings | ✓ | ✓ | — |
| Invite & remove team members | ✓ | — | — |
| Change member roles | ✓ | — | — |
| Billing, plans, invoices | ✓ | — | — |
| Organization settings | ✓ | — | — |
| Agent Builder | ✓ | — | — |
| View audit feed | ✓ | ✓ | Limited |
Full control of the organization. Use for founders, IT leads, and anyone managing:
- Billing and payment methods
- Credentials — encrypted vault for tool auth
- Team invites and role changes
- Organization settings
- Agent Builder — conversational admin configuration
Admins are accountable for domain allowlists and widget security.
editor
Section titled “editor”Build and operate assistants without accessing billing or the credentials vault. Editors can:
- Upload and classify documents
- Configure tools that use existing credentials
- Publish widget deployments
- Tune RAG and search settings
Editors cannot invite users, rotate secrets, or change plans.
viewer
Section titled “viewer”Read-only access for stakeholders who need visibility without change risk:
- Dashboard KPIs and analytics
- Assistant and KB configuration (no save)
- Audit feed where plan allows
Viewers cannot upload documents, edit prompts, or deploy widgets.
Multi-tenant isolation
Section titled “Multi-tenant isolation”Roles apply within one organization. Users invited to multiple orgs may have different roles in each. Data — assistants, KBs, Qdrant collections, conversations — is isolated per organization.
Changing roles
Section titled “Changing roles”- Settings → Team
- Select member → Edit role
- Save — change is recorded in Audit feed
Only admins can change roles.