Document toolboxDocument toolbox

Role permissions

The following sections list all the role permissions available in the Devo Platform, classified under the set categories. Each permission includes View and Manage levels to better define the actions that a custom role can perform. Read Managing roles to learn more about custom roles and permissions.

Remember that the Admin and Owner roles grant all the permissions, while the No Privileges role is limited to modifying their own settings, receiving alerts, using custom finders, and view and create dashboards, as well as other general actions.

Alerts

This group includes two different groups of permissions, and each of them includes a set of related individual permissions.

Alert configuration

PermissionViewManage

Alert configuration

Grants the user view-only access to the Administration → Alert Configuration areaAllows the user to view, create, modify and delete alert definitions in Administration → Alert Configuration. The user can also define new alerts after running a search

This is a group permission. This means that it is not only a category to classify some permissions, but also a permission itself that must be activated to select one or several of the permissions it includes. Note that enabling group permissions does not imply enabling the permissions under them.

 Click to see the permissions in this group
PermissionViewManage
Email delivery methodsGrants the user view-only access to the Email tab in Administration → Alert configuration → Delivery MethodsGrants the user access to the Email tab in Administration → Alert configuration → Delivery Methods, and the ability to view and create new email delivery methods
HTTP-JSON delivery methodsGrants the user view-only access to the HTTP-JSON tab in Administration → Alert configuration → Delivery MethodsGrants the user access to the HTTP-JSON tab in Administration → Alert configuration → Delivery Methods, and the ability to view and create new HTTP-JSON delivery methods
JIRA delivery methodsGrants the user view-only access to the JIRA tab in Administration → Alert configuration → Delivery MethodsGrants the user access to the JIRA tab in Administration → Alert configuration → Delivery Methods, and the ability to view and create new JIRA delivery methods
Pagerduty delivery methodsGrants the user view-only access to the Pagerduty tab in Administration → Alert configuration → Delivery MethodsGrants the user access to the Pagerduty tab in Administration → Alert configuration → Delivery Methods, and the ability to view and create new Pagerduty delivery methods
Pushover delivery methodsGrants the user view-only access to the Pushover tab in Administration → Alert configuration → Delivery MethodsGrants the user access to the Pushover tab in Administration → Alert configuration → Delivery Methods, and the ability to view and create new Pushover delivery methods
Service Desk delivery methodsGrants the user view-only access to the Service Desk tab in Administration → Alert configuration → Delivery MethodsGrants the user access to the Service Desk tab in Administration → Alert configuration → Delivery Methods, and the ability to view and create new Service Desk delivery methods
ServiceNow delivery methodsGrants the user view-only access to the ServiceNow tab in Administration → Alert configuration → Delivery Methods Grants the user access to the ServiceNow tab in Administration → Alert configuration → Delivery methods, and the ability to view and create new ServiceNow delivery methods
Slack delivery methodsGrants the user view-only access to the Slack tab in Administration → Alert configuration → Delivery MethodsGrants the user access to the Slack tab in Administration → Alert configuration → Delivery Methods, and the ability to view and create new Slack delivery methods

Triggered alerts

PermissionViewManage

Triggered alerts

Allows the user to access Alerts → Alerts Dashboard and see the triggered alerts. Also, the user can see the Alerts tab in the Preferences areaAllows the user to view and manage triggered alerts in Alerts → Alerts Dashboard. Also, the user can see the Alerts tab in the Preferences area

This is a group permission. This means that it is not only a category to classify some permissions, but also a permission itself that must be activated to select one or several of the permissions it includes. Note that enabling group permissions does not imply enabling the permissions under them.

 Click to see the permissions in this group
PermissionViewManage
Read/unread alertN/AAllows the user to mark a triggered alert as read or unread. It also allows the user to change its priority.
Unread domain alertsN/AAllows the user to reset the count of unread alerts for the entire domain in Alerts → Alerts History.

Applications

These are the permissions included in this group:

PermissionViewManage
Application GalleryN/AGrant the user access to Administration → Application Gallery and the ability to enable or disable applications for the domain

Tools*

*Note that this permission is not available in your domain by default. Contact Devo if you need to access this feature.

Grant the user access to the Tools area of the application

N/A

Data

These are the groups included in this category:

Aggregation tasks

PermissionViewManage
Domain aggregation tasksN/AAllows the user to edit, run/stop and delete tasks in the Aggregation Tasks tab of the Administration → Data Management area

Input data

PermissionViewManage
Data uploadN/AMakes the Data Upload area available to the user so they can upload files from Dropbox or their local machine
RelaysGrants the user view-only access to Administration → RelaysAllows the user to manage and delete relays in Administration → Relays
PermissionViewManage
Domain permalinksThe user can view all the domain permalinks in the Administration → Data Management → Permalinks areaAllows the user to view, modify, and delete permalinks created by any users in the domain in the Administration → Data Management → Permalinks area
My permalinksGrants the user view-only access to the Permalinks tab in Administration → Data Management to view his/her own permalinksAllows the user to access the Permalinks tab in Administration → Data Management to view, modify and delete his/her own permalinks. The user is also allowed to create new permalinks in the Dashboards area selecting Share → Permalinks

Apart from the groups above, there are two other permissions in this category:

PermissionViewManage
my.app injectionsAllows the user to access Administration → Data Management → Injections and view injectionsAllows the user to access Administration → Data Management → Injections and view, edit or delete injections. The user can also create new injection tasks after running a search
ODataAllows the user to access the API & OData Feeds tab in Administration → Data management to view the existing OData feedsAllows the user to access the API & Odata Feeds tab in Administration → Data management to view, edit and delete OData feeds. Also, the user can define new OData feeds after running a search

Data search

This group includes two different group permissions, and each of them includes a set of related individual permissions.

Finders

PermissionViewManage

Finders

Allows the user to access the Data Search → Explore Your Data area and use the default finder. You can also select a custom finder as the default one for the role in the dropdown box that appears after selecting this permissionAllows the user to access the Data Search → Explore Your Data area and use any available finder. Besides, the user can create, modify and delete custom finders

This is a group permission. This means that it is not only a category to classify some permissions, but also a permission itself that must be activated to select one or several of the permissions it includes. Note that enabling group permissions does not imply enabling the permissions under them.

And these are the groups included in the Finders category:

Lookups

PermissionViewManage

Lookups

Allows the user to view upload lookups in the Lookup Management tab of the Data Search area. The user can also use these lookups to apply query operations in a searchThe user can access the Lookup Management tab in the Data Search area to view, create, edit or delete upload lookups. The user can also use these lookups to apply query operations in a search

This is a group permission. This means that it is not only a category to classify some permissions, but also a permission itself that must be activated to select one or several of the permissions it includes. Note that enabling group permissions does not imply enabling the permissions under them.

 Click to see the permissions in this group
PermissionViewManage
Lookup restrictionsAllows the user to view, but not edit, the restrictions that dictate with which tables a lookup can be used in Data Search → Lookup Management, selecting the ellipsis menu of the required lookup and clicking RestrictionsAllows the user to view and define the restrictions that dictate with which tables a lookup can be used in Data Search → Lookup Management, selecting the ellipsis menu of the required lookup and clicking Restrictions

Query lookups*

*Note that this permission is not available in your domain by default. Contact Devo if you need to access this feature.

The user can view query lookups in Data Search → Lookup Management and use them to apply query operations in a search.Allows the user to view, modify, or delete query lookup tables in the Lookup Management tab of the Data Search area. The user can also define new query lookups in the search window after running a search and use them to apply query operations in a search.

Queries

PermissionViewManage
Domain search historyThe user can access the most recently accessed queries in the domain in Data Search → Query HistoryN/A
Free text queriesN/AAllows the user to run free-text queries in Data Search → Explore Your Data → Free Text Query

Global searches*

*Note that this permission is not available in your domain by default. Contact Devo if you need to access this feature.

N/AAllows the user to perform global searches in Data Search → Explore Your Data → Global Search
Query managementAllows the user to view running queries in the Query Management tab of the Data Search areaAllows the user to view and manage running queries in the Query Management tab of the Data Search area

Query priority*

*Note that this permission is not available in your domain by default. Contact Devo if you need to access this feature.

N/AAllows the user to set both the default and maximum query priority for each new session. In the drop-down menus below, the user can set the range for the role.

Search window

PermissionViewManage
Custom tablesN/AAllows the user to create and manage custom tables after running a search
Data search downloadAllows the user to download data from their searchesN/A
Log autoparserN/AAllows the user to use the log autoparser in my.app tables that are not parsed
Show/hide columnsN/AAllows the user to edit the default column configuration of a data table and save it as the default one for the domain
Time control*

*Note that this permission is not available in your domain by default. Contact Devo if you need to access this feature.
N/AAllows the user to choose the default reference time for tables that contain both creation and event dates

Exchange

PermissionViewManage
ExchangeThe user can access Exchange, as well as browse and install/uninstall contents.N/A

Flow

These are the permissions included in this group:

Own Flows

PermissionViewManage

Own Flows

N/AThe user can manage their own Flows in the domain (create, read, update and delete).

This is a group permission. This means that it is not only a category to classify some permissions, but also a permission itself that must be activated to select one or several of the permissions it includes. Note that enabling group permissions does not imply enabling the permissions under them.

 Click to see the permissions in this group
PermissionViewManage
Domain FlowsN/AThe user can manage all Flows in the domain (create, read, update and delete).

Home

Home area

PermissionViewManage

Home area

Makes the Home area visible to the user

N/A

This is a group permission. This means that it is not only a category to classify some permissions, but also a permission itself that must be activated to select one or several of the permissions it includes. Note that enabling group permissions does not imply enabling the permissions under them.

 Click to see the permissions in this group
PermissionViewManage
Top 10 (Last 24h) widgetAllows the user to see the Top 10 (Last 24h) widget in the Home area, and access the queries it showsN/A

Apart from the group above, there is another permission in this category:

PermissionViewManage

First steps

Makes the First Steps welcome window appear each time the user logs in to the domainAllows the user to stop the First Steps welcome window from appearing upon login

Machine learning

These are the permissions included in this group:

PermissionViewManage

Models

Makes the First Steps welcome window appear each time the user logs in to the domainAllows the user to stop the First Steps welcome window from appearing upon login

NASS

Note that this group is not available in your domain by default. Contact Devo if you need to access this feature.

These are the permissions included in this group:

PermissionViewManage
App managementN/AThe user can log in to the administration application to manage the apps
Clients managementN/AThe user can log in to the administration application to manage the domains and resellers
IssuesN/AThe user can log in to the administration application to log issues
PlatformN/AThe user can log in to the administration application to manage the platform

Notifications

PermissionViewManage
NotificationsMakes the Notifications area available to the userAllows the user to view and delete notifications

Resources

These are the permissions included in this group:

PermissionViewManage
ActiveboardsThe user can access the Activeboards area and view their own ActiveboardsThe user can access the Activeboards area, view, create, edit and delete their own Activeboards
DashboardsAllows the user to view their own Dashboards in the Dashboards areaAllows the user to view, create, modify and delete their own Dashboards in the Dashboards area
PanelsAllows the user to view their own panels in the Panels areaAllows the user to view, create, modify and delete their own panels in the Panels area
User resourcesN/AAllows the user to view, edit and delete all the domain resources (activeboards, dashboards...)

Security

These are the permissions included in this group:

PermissionViewManage
API keysGrants the user view-only access to the Access Keys tab in Administration → CredentialsAllows the user to view, generate and delete API keys in the Access Keys tab of the Administration → Credentials area
API v2 tokensAllows the user to view existing APIv2 tokens in the Authentication Tokens tab of the Administration → Credentials areaAllows the user to view, create, edit and delete APIv2 tokens in the Authentication Tokens tab of the Administration → Credentials area
Domain authenticationGrants the user access to the Authentication tab in Preferences → Domain Preferences and view authentication methods for domain loginsGrants the user access to the Authentication tab in Preferences → Domain Preferences and the ability to enable or disable authentication methods for domain logins
HTTP tokensAllows the user to view existing HTTP tokens in the Authentication Tokens tab of the Administration → Credentials areaAllows the user to view, create, enable/disable and delete HTTP tokens in the Authentication Tokens tab of the Administration → Credentials area
X.509 certsAllows the user to view and download X.509 certificates in Administration → Credentials → X.509 CertificatesAllows the user to view, generate, download and delete X.509 certificates in Administration → Credentials → X.509 Certificates

Social

These are the permissions included in this group:

PermissionViewManage
Help - ContactGrants the user access to the Help → Customer Support menu for contacting Devo customer supportN/A
Social IntelligenceMakes the Social Intelligence area available to the userN/A
View Help - Social linksMakes the Devo social media link visible to the user in the Help areaN/A

Users & Roles

These are the permissions included in this group:

PermissionViewManage
PreferencesN/AAllows the user to edit his own preferences in Preferences → User Preferences. For users with the Admin role, this allows them to edit the Domain Preferences as well
RolesGrants the user view-only access to Administration → RolesAllows the user to create, modify and delete roles in Administration → Roles
View profileAllows the user to view their own user profileN/A

Also, this category includes the following group permission:

PermissionViewManage

Users

Grants the user view-only access to Administration → UsersAllows the user to view, create, modify and delete users in Administration → Users

This is a group permission. This means that it is not only a category to classify some permissions, but also a permission itself that must be activated to select one or several of the permissions it includes. Note that enabling group permissions does not imply enabling the permissions under them.

 Click to see the permissions in this group
PermissionViewManage
Domain activityAllows the user to view the list of recent activity in the domain in Administration → Users → User ActivityN/A
Domain connectionsAllows the user to view the list of last connections in the domain in Administration → Users → User LoginsN/A