Feature reference

Permission catalogue

Every registered resource and the actions available on it, grouped by module.

How to read this

A permission is written resource:action. The resource names the thing, the action names what you may do to it — so payment:refund is the permission to refund a payment.

Roles are built by picking codenames from this list. The tables below give every resource the platform registers, grouped by module, with the actions available on each. There are 99 resources across 16 modules.

Note

This catalogue is generated from the backend registry, so it lists what the platform actually enforces. See Roles, permissions and admin invitations for how to use it.

The catalogue

Access control

ResourceWhat it coversActions
admin_invitationInvite and manage organization admins.create, read, update, delete
permissionDefine the atomic actions a role or user can be granted.create, read, update, delete
permission_logAudit permission grants, denials, and authorization decisions.read
resource_policyApply object-level policy rules to specific protected records.create, read, update, delete
roleBundle permissions into reusable admin and staff access roles.create, read, update, delete
user_permissionAssign direct permission overrides to individual users.create, read, delete
user_roleAttach roles to users inside an organization.create, read, delete

Organization

ResourceWhat it coversActions
membership_typeManage the membership categories people can apply for or belong to.create, read, update, delete
organizationManage the organization profile, branding, and core settings.create, read, update, delete
organization_birthday_card_settingConfigure whether the organization sends members a birthday card, what it says, and when it goes out.read, update
organization_chapterManage chapter records used to organize members geographically.create, read, update, delete
organization_staffAppoint and end the employment of secretariat staff who administer the organization without being members of it.create, read, update, delete
organization_member_identifier_definitionDefine organization-specific identifier fields required from members.create, read, update, delete
organization_membership_number_settingConfigure how organization membership numbers are generated.create, read, update, delete
organization_onboarding_step_settingConfigure which membership onboarding steps applicants may skip.create, read, update, delete
organization_specialtyManage specialty options members can be grouped under.create, read, update, delete
organization_subdivisionManage internal subdivisions or sections within the organization.create, read, update, delete

Corporate membership

ResourceWhat it coversActions
corporate_applicationReview and decide corporate membership applications.create, read, update, delete
corporate_document_requirementDefine the documents corporate applicants must supply for each membership type.create, read, update, delete
corporate_profileManage the corporate bodies that hold memberships.create, read, update, delete
corporate_representativeInvite and manage the people who act for a corporate member.create, read, update, delete

Members and applications

ResourceWhat it coversActions
applicationReview and manage membership applications submitted by users.create, read, update, delete
application_identifierManage identifier values submitted as part of an application.create, read, update, delete
education_historyManage academic records attached to a member application.create, read, update, delete
membership_claimSee who has searched for and claimed an imported membership record.list, read
next_of_kinManage emergency and next-of-kin records submitted by members.create, read, update, delete
preapproved_member_invitationInvite pre-approved members and manage invitation resend, revoke, and acceptance.create, read, update, delete
refereeManage referee contacts and supporting references for applications.create, read, update, delete
userManage user accounts, profiles, and account-level access details.create, read, update, delete
work_experienceManage professional history submitted with member applications.create, read, update, delete

Importing a member list

ResourceWhat it coversActions
member_importUpload a roster of already-approved members, map its columns and categories, preview it, and commit it as invitations with dues coverage already recorded.create, read, update, commit, delete

Messaging

ResourceWhat it coversActions
messageSend and manage individual messages inside organization conversations.create, read, update, delete
message_participantManage who participates in a conversation and their read state.create, read, update, delete
message_threadCreate and manage shared admin chats and private admin-member conversations.create, read, update, delete

Notifications

ResourceWhat it coversActions
notificationDeliver in-app alerts tied to product activity and workflows.create, read, update, delete
notification_preferenceControl how each user receives in-app, email, SMS, and push notifications.read, update
push_subscriptionInspect and revoke browser push subscriptions.read, delete
whatsapp_challengeInspect WhatsApp phone-verification attempts for support and audit.read
sms_verification_attemptInspect members whose SMS verification codes never arrived.read
birthday_cardRead the member birthday list, export it, and send a birthday card.read, export, send, manage
birthday_portraitUpdate a member's birthday-card portrait framing.update
email_engagementRead organization email delivery and engagement analytics, manage member engagement ownership, stages, notes and follow-ups, and export member engagement metrics.read, manage, export
announcementCompose organization announcements, preview their audience, send or schedule them to members and event registrants, and read per-announcement delivery reports.read, create, send

Payments

ResourceWhat it coversActions
paymentView and manage payments.list, read, refund
payment_settingsConfigure payment settings and gateways.read, update
gateway_credentialManage payment gateway credentials.create, read, update, delete
subscriptionView and manage membership subscriptions, including life membership.list, read, create, update
offline_paymentVerify and approve offline payments.verify
payment_requestSee every pay-link, raise a custom bill for a member, and cancel a link so it can no longer be paid.list, create, cancel
member_ledgerView members' carried-over balances from an imported roster, and waive, void or correct them.list, read, adjust

Documents

ResourceWhat it coversActions
document_templateConfigure generated document templates and certificate settings.create, read, update, delete
document_assetManage generated document images such as signatures, seals, and backgrounds.create, read, update, delete
document_generation_logView generated document analytics and audit metadata.read

Conferences

ResourceWhat it coversActions
conferenceCreate, edit, publish, and manage organization conferences, events, and their ticket types.create, read, update, delete, publish
conference_communicationSend announcements to conference registrants and inspect delivery.create, read

Public website

ResourceWhat it coversActions
cms_siteManage public-site settings, theme tokens, and launch control.read, update
cms_pageCreate, edit, publish, and manage public CMS pages and sub-pages.create, read, update, publish, delete
cms_page_templateBrowse and apply ready-to-use page templates.read, use
cms_navigationManage header, footer, and mobile navigation menus.read, manage
cms_mediaUpload and manage the reusable media library.read, upload, delete
cms_newsCreate, edit, and publish public news articles.read, manage, publish
cms_eventCreate, edit, and publish public event listings.read, manage, publish
cms_publicationCreate, edit, and publish downloadable publications.read, manage, publish
cms_categoryManage the category vocabulary for publications, news, and FAQs.read, manage
cms_leadershipCreate, edit, and publish leadership/people profiles.read, manage, publish
cms_chapterCreate, edit, and publish chapter/branch directory records.read, manage, publish
cms_faqCreate, edit, and publish FAQ entries.read, manage, publish
cms_themePreview and update public-site theme settings.read, update
cms_contactView and manage public Contact-Us form submissions.read, manage

Training

ResourceWhat it coversActions
training_courseCreate, publish, and manage training courses and their delivery structure.create, read, update, delete, publish
training_enrollmentReview, approve, cancel, and complete training enrollments.create, read, update, delete, approve, complete
training_courseworkManage training modules, lessons, assignments, submissions, and assessments.create, read, update, delete, grade
training_attendanceView and record trainee attendance.read, update
training_communicationSend training announcements and inspect reminder delivery.create, read

General meetings

ResourceWhat it coversActions
meeting_seriesCreate and manage recurring general-meeting series and their schedules.create, read, update, delete
meetingCreate, edit, publish, cancel, and manage individual general meetings.create, read, update, delete, publish
meeting_agendaDraft and publish meeting agendas.create, read, update, delete, publish
meeting_minutesRecord, approve, and publish meeting minutes.create, read, update, delete, approve, publish
meeting_documentManage meeting documents, pre-reads, and review materials.create, read, update, delete
meeting_participantManage meeting presenters, hosts, chairs, and announcers.create, read, update, delete
meeting_attendanceView, record, override, and export meeting attendance, RSVPs, and apologies.read, create, update, export
meeting_communicationSend meeting notices and inspect reminder delivery.create, read
meeting_resolutionDraft, open, close, and record meeting resolutions and their outcomes.create, read, update, delete, open, close
meeting_proxyReview and approve proxy attendance nominations.read, update, delete

Engage

ResourceWhat it coversActions
engage_serviceConfigure Engage service engagements, plans, and entitlements.read, manage
engage_campaignCreate and manage Engage campaigns, briefs, milestones, and journeys.create, read, update, archive
engage_taskCreate, assign, and move Engage production Work Board cards.create, read, update, assign
engage_contentCreate and edit Engage content items and submit them for review.create, read, update, submit
engage_placementCreate, edit, schedule, and record publication of channel placements.create, read, update, schedule, publish
engage_approvalRequest and decide revision-specific Engage approvals.read, request, decide
engage_client_inputProvide client source input and edit allowlisted released fields.create, read, update
engage_assetUpload and manage tenant-isolated Engage brand assets.read, upload, update, archive
engage_escalationTrack monitoring items and official-response escalations.read, update, respond
engage_metricEnter, edit, and import Engage performance metrics.read, create, update, import
engage_reportView and export Engage delivery and performance reports.read, export
engage_auditRead the append-only Engage activity and audit timeline.read

Account delegation

ResourceWhat it coversActions
account_delegationSee who members have allowed to manage their accounts, read what those assistants did, and end a member's delegation.list, audit, revoke

Administrator onboarding

ResourceWhat it coversActions
onboarding_analyticsRead named administrator onboarding adoption and fatigue reporting.read
onboarding_progressRead administrator onboarding progress for the current user or permitted reports.read
Permission catalogue | Help Centre