Skip to main content
In this section

User Roles in Console

Console assigns roles at two levels:

  • A platform role applies across Console. Every account is either a Platform User or Platform Admin.
  • An organization role applies to one organization. A user can belong to multiple organizations and have a different role in each one.

A Platform Admin can administer every organization without an organization role. Feature flags, subscription limits, and connected-tool permissions can still affect which features are available.

Platform Roles​

Platform Admin​

Platform Admin is intended for platform engineers who operate Console and administer the entire SmoothGlue platform. It includes every Organization Admin capability in every organization, without requiring separate organization roles.

Platform User​

Platform User is the standard role for a Console account. It allows a user to sign in and manage their own profile, but it does not provide organization access or administrative capabilities on its own.

To use an organization, a Platform User must also have an organization role for that organization.

TaskPlatform AdminPlatform User
Manage their own profileYesYes
View and use organization resourcesYes1Yes2
Create and manage organizations and platform usersYesNo
Manage members, roles, teams, projects, and deploymentsYes1No
Discover and open platform toolsYesNo
Repair supported Console resourcesYesNo
Monitor Console status and platform healthYesNo

Organization Roles​

Organization roles apply only to the organization where they are assigned.

Organization Admin​

Organization Admin is intended for organization owners or leads who manage an organization's members and resources. It does not allow the user to manage other organizations, create or manage platform users, assign the Platform Admin role, monitor platform-wide health, or change platform-level settings.

Organization Privileged​

Organization Privileged is intended for users who need standard Console access and elevated access in supported connected tools.

Organization User​

Organization User is intended for users who need to view and use an organization's resources without administering them. Access within connected tools depends on the permissions provided by those tools and the user's team memberships.

TaskOrganization AdminOrganization PrivilegedOrganization User
View members, projects, teams, tools, and deploymentsYesYesYes
Add, update, and remove organization membersYesNoNo
Assign organization rolesYesNoNo
Create and manage teams and team membershipYesNoNo
Create, configure, and delete projectsYesNoNo
Add and remove project tool linksYesNoNo
Create, update, and remove deploymentsYesNoNo
Create and manage Data Mesh resourcesYesNoNo

Organization Privileged and Organization User intentionally have the same permissions in Console. Their access can differ in connected tools; those mappings are documented separately.

Footnotes​

  1. Applies automatically across all organizations without needing individual organization roles. ↩ ↩2

  2. Requires an organization role. ↩