Feature reference
Permission catalogue
Every registered resource and the actions available on it, grouped by module.
How to read this
A permission is written resource:action. The resource names the thing, the action names what you may do to it — so payment:refund is the permission to refund a payment.
Roles are built by picking codenames from this list. The tables below give every resource the platform registers, grouped by module, with the actions available on each. There are 99 resources across 16 modules.
Note
This catalogue is generated from the backend registry, so it lists what the platform actually enforces. See Roles, permissions and admin invitations for how to use it.
The catalogue
Access control
| Resource | What it covers | Actions |
|---|---|---|
admin_invitation | Invite and manage organization admins. | create, read, update, delete |
permission | Define the atomic actions a role or user can be granted. | create, read, update, delete |
permission_log | Audit permission grants, denials, and authorization decisions. | read |
resource_policy | Apply object-level policy rules to specific protected records. | create, read, update, delete |
role | Bundle permissions into reusable admin and staff access roles. | create, read, update, delete |
user_permission | Assign direct permission overrides to individual users. | create, read, delete |
user_role | Attach roles to users inside an organization. | create, read, delete |
Organization
| Resource | What it covers | Actions |
|---|---|---|
membership_type | Manage the membership categories people can apply for or belong to. | create, read, update, delete |
organization | Manage the organization profile, branding, and core settings. | create, read, update, delete |
organization_birthday_card_setting | Configure whether the organization sends members a birthday card, what it says, and when it goes out. | read, update |
organization_chapter | Manage chapter records used to organize members geographically. | create, read, update, delete |
organization_staff | Appoint and end the employment of secretariat staff who administer the organization without being members of it. | create, read, update, delete |
organization_member_identifier_definition | Define organization-specific identifier fields required from members. | create, read, update, delete |
organization_membership_number_setting | Configure how organization membership numbers are generated. | create, read, update, delete |
organization_onboarding_step_setting | Configure which membership onboarding steps applicants may skip. | create, read, update, delete |
organization_specialty | Manage specialty options members can be grouped under. | create, read, update, delete |
organization_subdivision | Manage internal subdivisions or sections within the organization. | create, read, update, delete |
Corporate membership
| Resource | What it covers | Actions |
|---|---|---|
corporate_application | Review and decide corporate membership applications. | create, read, update, delete |
corporate_document_requirement | Define the documents corporate applicants must supply for each membership type. | create, read, update, delete |
corporate_profile | Manage the corporate bodies that hold memberships. | create, read, update, delete |
corporate_representative | Invite and manage the people who act for a corporate member. | create, read, update, delete |
Members and applications
| Resource | What it covers | Actions |
|---|---|---|
application | Review and manage membership applications submitted by users. | create, read, update, delete |
application_identifier | Manage identifier values submitted as part of an application. | create, read, update, delete |
education_history | Manage academic records attached to a member application. | create, read, update, delete |
membership_claim | See who has searched for and claimed an imported membership record. | list, read |
next_of_kin | Manage emergency and next-of-kin records submitted by members. | create, read, update, delete |
preapproved_member_invitation | Invite pre-approved members and manage invitation resend, revoke, and acceptance. | create, read, update, delete |
referee | Manage referee contacts and supporting references for applications. | create, read, update, delete |
user | Manage user accounts, profiles, and account-level access details. | create, read, update, delete |
work_experience | Manage professional history submitted with member applications. | create, read, update, delete |
Importing a member list
| Resource | What it covers | Actions |
|---|---|---|
member_import | Upload a roster of already-approved members, map its columns and categories, preview it, and commit it as invitations with dues coverage already recorded. | create, read, update, commit, delete |
Messaging
| Resource | What it covers | Actions |
|---|---|---|
message | Send and manage individual messages inside organization conversations. | create, read, update, delete |
message_participant | Manage who participates in a conversation and their read state. | create, read, update, delete |
message_thread | Create and manage shared admin chats and private admin-member conversations. | create, read, update, delete |
Notifications
| Resource | What it covers | Actions |
|---|---|---|
notification | Deliver in-app alerts tied to product activity and workflows. | create, read, update, delete |
notification_preference | Control how each user receives in-app, email, SMS, and push notifications. | read, update |
push_subscription | Inspect and revoke browser push subscriptions. | read, delete |
whatsapp_challenge | Inspect WhatsApp phone-verification attempts for support and audit. | read |
sms_verification_attempt | Inspect members whose SMS verification codes never arrived. | read |
birthday_card | Read the member birthday list, export it, and send a birthday card. | read, export, send, manage |
birthday_portrait | Update a member's birthday-card portrait framing. | update |
email_engagement | Read organization email delivery and engagement analytics, manage member engagement ownership, stages, notes and follow-ups, and export member engagement metrics. | read, manage, export |
announcement | Compose organization announcements, preview their audience, send or schedule them to members and event registrants, and read per-announcement delivery reports. | read, create, send |
Payments
| Resource | What it covers | Actions |
|---|---|---|
payment | View and manage payments. | list, read, refund |
payment_settings | Configure payment settings and gateways. | read, update |
gateway_credential | Manage payment gateway credentials. | create, read, update, delete |
subscription | View and manage membership subscriptions, including life membership. | list, read, create, update |
offline_payment | Verify and approve offline payments. | verify |
payment_request | See every pay-link, raise a custom bill for a member, and cancel a link so it can no longer be paid. | list, create, cancel |
member_ledger | View members' carried-over balances from an imported roster, and waive, void or correct them. | list, read, adjust |
Documents
| Resource | What it covers | Actions |
|---|---|---|
document_template | Configure generated document templates and certificate settings. | create, read, update, delete |
document_asset | Manage generated document images such as signatures, seals, and backgrounds. | create, read, update, delete |
document_generation_log | View generated document analytics and audit metadata. | read |
Conferences
| Resource | What it covers | Actions |
|---|---|---|
conference | Create, edit, publish, and manage organization conferences, events, and their ticket types. | create, read, update, delete, publish |
conference_communication | Send announcements to conference registrants and inspect delivery. | create, read |
Public website
| Resource | What it covers | Actions |
|---|---|---|
cms_site | Manage public-site settings, theme tokens, and launch control. | read, update |
cms_page | Create, edit, publish, and manage public CMS pages and sub-pages. | create, read, update, publish, delete |
cms_page_template | Browse and apply ready-to-use page templates. | read, use |
cms_navigation | Manage header, footer, and mobile navigation menus. | read, manage |
cms_media | Upload and manage the reusable media library. | read, upload, delete |
cms_news | Create, edit, and publish public news articles. | read, manage, publish |
cms_event | Create, edit, and publish public event listings. | read, manage, publish |
cms_publication | Create, edit, and publish downloadable publications. | read, manage, publish |
cms_category | Manage the category vocabulary for publications, news, and FAQs. | read, manage |
cms_leadership | Create, edit, and publish leadership/people profiles. | read, manage, publish |
cms_chapter | Create, edit, and publish chapter/branch directory records. | read, manage, publish |
cms_faq | Create, edit, and publish FAQ entries. | read, manage, publish |
cms_theme | Preview and update public-site theme settings. | read, update |
cms_contact | View and manage public Contact-Us form submissions. | read, manage |
Training
| Resource | What it covers | Actions |
|---|---|---|
training_course | Create, publish, and manage training courses and their delivery structure. | create, read, update, delete, publish |
training_enrollment | Review, approve, cancel, and complete training enrollments. | create, read, update, delete, approve, complete |
training_coursework | Manage training modules, lessons, assignments, submissions, and assessments. | create, read, update, delete, grade |
training_attendance | View and record trainee attendance. | read, update |
training_communication | Send training announcements and inspect reminder delivery. | create, read |
General meetings
| Resource | What it covers | Actions |
|---|---|---|
meeting_series | Create and manage recurring general-meeting series and their schedules. | create, read, update, delete |
meeting | Create, edit, publish, cancel, and manage individual general meetings. | create, read, update, delete, publish |
meeting_agenda | Draft and publish meeting agendas. | create, read, update, delete, publish |
meeting_minutes | Record, approve, and publish meeting minutes. | create, read, update, delete, approve, publish |
meeting_document | Manage meeting documents, pre-reads, and review materials. | create, read, update, delete |
meeting_participant | Manage meeting presenters, hosts, chairs, and announcers. | create, read, update, delete |
meeting_attendance | View, record, override, and export meeting attendance, RSVPs, and apologies. | read, create, update, export |
meeting_communication | Send meeting notices and inspect reminder delivery. | create, read |
meeting_resolution | Draft, open, close, and record meeting resolutions and their outcomes. | create, read, update, delete, open, close |
meeting_proxy | Review and approve proxy attendance nominations. | read, update, delete |
Engage
| Resource | What it covers | Actions |
|---|---|---|
engage_service | Configure Engage service engagements, plans, and entitlements. | read, manage |
engage_campaign | Create and manage Engage campaigns, briefs, milestones, and journeys. | create, read, update, archive |
engage_task | Create, assign, and move Engage production Work Board cards. | create, read, update, assign |
engage_content | Create and edit Engage content items and submit them for review. | create, read, update, submit |
engage_placement | Create, edit, schedule, and record publication of channel placements. | create, read, update, schedule, publish |
engage_approval | Request and decide revision-specific Engage approvals. | read, request, decide |
engage_client_input | Provide client source input and edit allowlisted released fields. | create, read, update |
engage_asset | Upload and manage tenant-isolated Engage brand assets. | read, upload, update, archive |
engage_escalation | Track monitoring items and official-response escalations. | read, update, respond |
engage_metric | Enter, edit, and import Engage performance metrics. | read, create, update, import |
engage_report | View and export Engage delivery and performance reports. | read, export |
engage_audit | Read the append-only Engage activity and audit timeline. | read |
Account delegation
| Resource | What it covers | Actions |
|---|---|---|
account_delegation | See who members have allowed to manage their accounts, read what those assistants did, and end a member's delegation. | list, audit, revoke |
Administrator onboarding
| Resource | What it covers | Actions |
|---|---|---|
onboarding_analytics | Read named administrator onboarding adoption and fatigue reporting. | read |
onboarding_progress | Read administrator onboarding progress for the current user or permitted reports. | read |
