Docs / Roles & Permissions

Roles & Permissions

SAR Portal uses role-based access control to manage what users can do within the system.

Available Roles

Admin

Full access to all features.

Admins can:

Recommended for:

Case Manager

Full case management capabilities.

Case Managers can:

Case Managers cannot:

Recommended for:

Reviewer

Review and limited editing capabilities.

Reviewers can:

Reviewers cannot:

Recommended for:

Read Only

View-only access for oversight.

Read Only users can:

Read Only users cannot:

Recommended for:

Permission Matrix

ActionAdminCase ManagerReviewerRead Only
View casesYesYesYesYes
Create casesYesYesNoNo
Edit casesYesYesLimitedNo
Close casesYesYesNoNo
Upload documentsYesYesYesNo
Delete documentsYesNoNoNo
AI analysisYesYesView onlyNo
Apply redactionsYesYesNoNo
Manage usersYesNoNoNo
Change settingsYesNoNoNo
Manage billingYesNoNoNo
View audit logsYesYesLimitedYes
Delete accountYesNoNoNo

Choosing the Right Role

Single User Organizations

Small Teams (2-5)

Larger Teams

Role Assignment

During Invitation

  1. Enter user email
  2. Select role from dropdown
  3. Send invitation
  4. User receives role upon activation

Changing Roles

Admins can change roles:

  1. Go to Users
  2. Find the user
  3. Click role dropdown
  4. Select new role
  5. Change is immediate

Role Change Notifications

Users are not automatically notified of role changes. Consider informing them directly.

Role Best Practices

Limit Admin Access

Regular Review

Separation of Duties

Training by Role

Special Considerations

Last Admin Rule

The system prevents removing the last admin:

Self-Role Changes

Users cannot change their own role. Another admin must make the change.

Audit Trail

All role assignments and changes are logged in the audit trail.