Roles and permissions
The five organization roles, what each one can do, and the rules for changing a role.
Every member of an organization has exactly one role. Roles are fixed and ordered, from the most to the least privileged: Owner, Admin, Editor, Analyst and Member.
| What you can do | Owner | Admin | Editor | Analyst | Member |
|---|---|---|---|---|---|
| See the organization, its groups and its policy | ✓ | ✓ | ✓ | ✓ | ✓ |
| Rename the organization, change its address or logo | ✓ | ✓ | |||
| Delete the organization | ✓ | ||||
| Invite and remove members, manage groups, assign roles | ✓ | ✓ | |||
| Change the security settings (session durations) | ✓ | ✓ | |||
| Read the audit log | ✓ | ✓ | |||
| See the member list (needed to share a game) | ✓ | ✓ | ✓ | ||
| See the forked games (title, status, deployed release) | ✓ | ✓ | ✓ | ✓ | |
| Fork, edit, release and deploy games, manage their access | ✓ | ✓ | ✓ | ||
| Read and export reports | ✓ | ✓ | ✓ | ✓ | |
| Switch reports to named mode | ✓ | ✓ | |||
| Manage billing | ✓ |
Members play the games shared with them. Analysts read the reports, which stay pseudonymous unless the organization chose named reporting. They see the list of forked games, to open each game's report, but never a game's content, rules or theme.
Two-step verification
Two-step verification is optional, unless your organization requires it from privileged roles (Owners, Admins, Editors, Analysts) or from every member: see Security and reporting. It is always needed to manage the security of the organization and to switch to named reports.
Changing a role
Owners and Admins change roles from the member list. Three rules always apply:
- Never above your own role. An Admin can make someone an Admin, but never an Owner, and cannot change or remove an Owner.
- Only an Owner appoints or demotes an Owner.
- At least one Owner. The last Owner can neither be demoted nor leave the organization: appoint another Owner first.
Any member can leave an organization on their own, except its last Owner.
Transferring ownership
To hand the organization over, the Owner opens Members and gives the Owner role to another member (Change the role → Owner). There are now two Owners: the former one can leave the organization, or the new Owner can change their role (for example to Admin). The organization always keeps at least one Owner along the way. You must do this before deleting your account if you are the only Owner of an organization that has other members.
Every role change, removal and refusal is recorded in the audit log.