/
Role permissions

Role permissions

The following sections list all the role permissions available in the Devo Platform, classified under the set categories. Each permission includes View and Manage levels to better define the actions that a custom role can perform. Read Managing roles to learn more about assigning permissions to custom roles.

Remember that the Admin and Owner roles grant all the permissions, while the No Privileges role is limited to modifying their own settings, receiving alerts, using custom finders, and other general actions.

Activeboard report scheduler

status:Permission

Activeboard report scheduler

status:View

Allows the user to see which Activeboards have a scheduled report, as well as use the dedicated filter to find them

status:Manage

Allows the user to create, edit or delete scheduled reports from Activeboards

Alerts

Alert configuration

status:Permission

Alert configuration

Group permission

Granting this permission does not imply granting the permissions below.

status:View

Grants the user view-only access to the Administration → Alert Configuration area

 

status:Manage

Allows the user to view, create, modify and delete alert definitions in Administration → Alert Configuration. The user can also define new alerts after running a search

 

status:Permission

Email delivery methods

HTTP-JSON delivery methods

Jira delivery methods

Pagerduty delivery methods

Pushover delivery methods

Service Desk delivery methods

ServiceNow delivery methods

Slack delivery methods

status:View

Grants the user view-only access to the Email / HTTP-JSON / Jira / Pagerduty / Pushover / Service Desk / ServiceNow / Slack tab in Administration → Alert configuration → Delivery Methods

status:Manage

Grants the user access to the Email / HTTP-JSON / Jira / Pagerduty / Pushover / Service Desk / ServiceNow / Slack tab in Administration → Alert configuration → Delivery Methods, and the ability to view and create new Email / HTTP-JSON / Jira / Pagerduty / Pushover / Service Desk / ServiceNow / Slack delivery methods

Triggered alerts

status:Permission

Triggered alerts

Group permission

Granting this permission does not imply granting the permissions below.

status:View

Allows the user to access Alerts → Alerts Dashboard and see the triggered alerts. Also, the user can see the Alerts tab in the Preferences area

status:Manage

Allows the user to view and manage triggered alerts in Alerts → Alerts Dashboard. Also, the user can see the Alerts tab in the Preferences area

 

status:Permission

Read/unread alert

status:View

N/A

status:Manage

Allows the user to mark a triggered alert as read or unread. Also allows the user to change its priority

Applications

status:Permission

Application Gallery

status:View

N/A

status:Manage

Grant the user access to Administration → Application Gallery and the ability to enable or disable applications for the domain

status:Permission

Built-in applications preferences at domain level

status:View

N/A

status:Manage

Allows the user to manage application preferences at domain level (only for applications that have built-in preferences)

status:Permission

Tools

Inactive by default

Contact Devo if you need to access this feature in your domain.

status:View

Grant the user access to the Tools area of the application

status:Manage

N/A

Data

Aggregation tasks

status:Permission

Domain aggregation tasks

status:View

Grants the user view-only access to the Aggregation Tasks tab in Administration → Data Management

status:Manage

Allows the user to edit, run/stop and delete tasks in the Aggregation Tasks tab of the Administration → Data Management area

Input data

status:Permission

Data upload

status:View

N/A

status:Manage

Makes the Data upload area available for users to upload files

status:Permission

Relays and ELBs

status:View

Grants the user view-only access to Administration → Relays and ELBs

status:Manage

Allows the user to manage and delete relays and ELBs in Administration → Relays and ELBs

my.app injections

status:Permission

my.app injections

status:View

Allows the user to access Administration → Data Management → Injections and view injections

status:Manage

Allows the user to access Administration → Data Management → Injections and view, edit or delete injections. The user can also create new injection tasks after running a search

OData

status:Permission

OData

status:View

Allows the user to access the Tokens tab in Administration → Credentials to view the existing OData feeds and tokens

status:Manage

Allows the user to access the Tokens tab in Administration → Credentials to view, edit and delete OData feeds and tokens. Also, the user can define new OData feeds after running a search

Data search

Finders

status:Permission

Finders

Group permission

Granting this permission does not imply granting the permissions below.

status:View

Allows the user to access the Data Search → Explore Your Data area and use the default finder. You can also select a custom finder as the default one for the role in the dropdown box that appears after selecting this permission

status:Manage

Allows the user to access the Data Search → Explore Your Data area and use any available finder. Besides, the user can create, modify and delete custom finders

 

status:Permission

Lookups

Group permission

Granting this permission does not imply granting the permissions below.

status:View

Allows the user to view upload lookups in the Lookup Management tab of the Data Search area. The user can also use these lookups to apply query operations in a search

status:Manage

The user can access the Lookup Management tab in the Data Search area to view, create, edit or delete upload lookups. The user can also use these lookups to apply query operations in a search

 

status:Permission

Query lookups

Inactive by default

Contact Devo if you need to access this feature in your domain.

status:View

The user can view query lookups in Data Search → Lookup Management and use them to apply query operations in a search

status:Manage

Allows the user to view, modify, or delete query lookup tables in the Lookup Management tab of the Data Search area. The user can also define new query lookups in the search window after running a search and use them to apply query operations in a search

Queries

 

status:Permission

Domain search history

status:View

The user can access the most recently accessed queries in the domain in Data Search → Query History

status:Manage

N/A

status:Permission

Free text queries

status:View

N/A

status:Manage

Allows the user to run free-text queries in Data Search → Explore Your Data → Free Text Query

status:Permission

Global searches

Inactive by default

Contact Devo if you need to access this feature in your domain.

N/A

status:Manage

Allows the user to perform global searches in Data Search → Explore Your Data → Global Search

status:Permission

Query management

status:View

Allows the user to view running queries in the Query Management tab of the Data Search area

status:Manage

Allows the user to view and manage running queries in the Query Management tab of the Data Search area

status:Permission

Query priority

Inactive by default

Contact Devo if you need to access this feature in your domain.

status:View

N/A

status:Manage

Allows the user to set both the default and maximum query priority for each new session. In the drop-down menus below, the user can set the range for the role.

Search Window

status:Permission

Custom tables

status:View

N/A

status:Manage

Allows the user to create and manage custom tables after running a search

status:Permission

Data search download

status:View

Allows the user to download data from their searches

status:Manage

N/A

status:Permission

Log autoparser

status:View

N/A

status:Manage

Allows the user to use the log autoparser in my.app tables that are not parsed

status:Permission

Show/hide fields

status:View

N/A

status:Manage

Allows the user to edit the default field configuration of a data table and save it as the default one for the domain

status:Permission

Stat count of searches

Inactive by default

Contact Devo if you need to access this feature in your domain.

status:View

Grants the user access to stat count of searches

status:Manage

N/A

status:Permission

Subqueries

Inactive by default

Contact Devo if you need to access this feature in your domain.

status:View

Allow the user to perform subqueries in their searches

status:Manage

N/A

status:Permission

Time control

Inactive by default

Contact Devo if you need to access this feature in your domain.

status:View

N/A

status:Manage

Allows the user to choose the default reference time for tables that contain both creation and event dates

DeepTrace features

status:Permission

DeepTrace features

status:View

N/A

status:Manage

Allow the user to access Devo DeepTrace

Exchange

status:Permission

Exchange

status:View

The user can access Exchange to browse available content.

status:Manage

The user can access Exchange to install/uninstall content, as well as send content proposals. Note that the corresponding resource permission is also required (Activeboards, Alert configuration, Lookups, or Synthetic data).

Flow

status:Permission

Own flows

Group permission

Granting this permission does not imply granting the permissions below.

status:View

N/A

status:Manage

The user can manage own Flows in the domain (create, read, update and delete)

 

status:Permission

Domain flows

status:View

N/A

status:Manage

The user can manage all Flows in the domain (create, read, update and delete)

Home

status:Permission

First steps

status:View

The user can view the First steps window

status:Manage

The user can view and deactivate the First steps window

status:Permission

Home area

Group permission

Granting this permission does not imply granting the permissions below.

status:View

Makes the Home area visible to the user

status:Manage

N/A

Machine learning

status:Permission

Models

Inactive by default

Contact Devo if you need to access this feature in your domain.

status:View

Allows the user to view models in the Machine Learning module or through the API

status:Manage

Allows the user to create, edit or delete models on the Machine Learning module or through the API

Multitenancy administration

Only in multitenant domains

The permissions in this group only appear for multitenant domains.

status:Permission

Multitenancy administration

status:View

N/A

status:Manage

Allows the user access to the Overview tab of the Multitenancy area

 

status:Permission

Custom data access

status:View

N/A

status:Manage

Allows the user access to the Custom data access tab of the Multitenancy area

Notifications

status:Permission

Notifications

status:View

Makes the Notifications area available to the user

status:Manage

Allows the user to view and delete notifications

Resources

status:Permission

Activeboards

status:View

The user can access the Activeboards area and view their own Activeboards

status:Manage

The user can access the Activeboards area, view, create, edit and delete their own Activeboards

status:Permission

User resources

status:View

N/A

status:Manage

Allows the user to view, edit and delete all the domain resources (Activeboards, alerts, lookups...)

Security

status:Permission

Aggregation tokens

status:View

Allows the user to view existing Aggregations Task API tokens in the Authentication Tokens tab of the Administration → Credentials area

status:Manage

Allows the user to view, create, edit and delete existing Aggregations Task API tokens in the Authentication Tokens tab of the Administration → Credentials area

status:Permission

Alert tokens

status:View

Allows the user to view existing alert tokens in the Authentication Tokens tab of the Administration → Credentials area

status:Manage

Allows the user to view, create, edit and delete alert tokens in the Authentication Tokens tab of the Administration → Credentials area

status:Permission

API keys

status:View

N/A

status:Manage

Allows the user to view, generate and delete API keys in the Access Keys tab of the Administration → Credentials area

status:Permission

API v2 tokens

status:View

Allows the user to view existing APIv2 tokens in the Authentication Tokens tab of the Administration → Credentials area

status:Manage

Allows the user to view, create, edit and delete APIv2 tokens in the Authentication Tokens tab of the Administration → Credentials area

status:Permission

HTTP tokens

status:View

Allows the user to view existing HTTP tokens in the Authentication Tokens tab of the Administration → Credentials area

status:Manage

Allows the user to view, create, enable/disable and delete HTTP tokens in the Authentication Tokens tab of the Administration → Credentials area. Take into account this permission will allow to see the list of users and tables in domain.

status:Permission

X.509 certs

status:View

Allows the user to view and download X.509 certificates in Administration → Credentials → X.509 Certificates

status:Manage

Allows the user to view, generate, download and delete X.509 certificates in Administration → Credentials → X.509 Certificates

SOAR

Automations

status:Permission

Automations

status:View

The user can access Automations and use it normally.

status:Manage

The user can manage Automations settings.

Social

status:Permission

Help - Community

status:View

Makes the Devo Community link visible to the user in the Help menu

status:Manage

N/A

status:Permission

Help - Contact

status:View

Grants the user access to the Help → Customer support menu for contacting Devo customer support

status:Manage

N/A

status:Permission

Help - Social links

status:View

Makes the Devo social media link visible to the user in the Help menu

status:Manage

N/A

Synthetic data injection jobs

status:Permission

Synthetic data injection jobs

status:View

N/A

status:Manage

The user can launch/stop synthetic data injection jobs from Exchange.

Usage analytics

status:Permission

Usage analytics

status:View

Allows the user to view Usage Analytics

status:Manage

N/A

User & Roles

status:Permission

Preferences

status:View

N/A

status:Manage

Allows the user to edit his own preferences in Preferences → User Preferences. For users with the Admin role, this allows them to edit the Domain Preferences as well

status:Permission

Roles

status:View

Grants the user view-only access to Administration → Roles

status:Manage

Allows the user to create, modify and delete roles in Administration → Roles

status:Permission

Users

Group permission

Granting this permission does not imply granting the permissions below.

status:View

Grants the user view-only access to Administration → Users

status:Manage

Allows the user to view, create, modify and delete users in Administration → Users

 

status:Permission

Domain activity

status:View

Allows the user to view the list of recent activity in the domain in Administration → Users → User Activity

status:Manage

N/A

status:Permission

Domain connections

status:View

Allows the user to view the list of last connections in the domain in Administration → Users → User Logins

status:Manage

N/A

status:Permission

View profile

status:View

Allows the user to view their own user profile

status:Manage

N/A

Related content