Manage Tenant Permissions — Platform Admin
Overview
Platform Admins can create and manage permission groups for tenant users. Permission groups define what actions a tenant user is allowed to perform within their tenant's dashboard. All permissions in tenant groups are Tenant-scoped — they never grant access to platform-level administration.
Permission Group Types
| Type | Description |
|---|---|
| Tenant Permission Group | Grants access to tenant-specific features (surveys, respondents, reports, file management, etc.). |
| System Permission Group | Grants access to Platform Admin capabilities. System groups must never be assigned to tenant users. |
These two types are strictly separate. A tenant user may only be assigned Tenant permission groups.
Creating a Tenant Permission Group
- Open Permissions from the dashboard navigation.
- Click New Permission Group.
- Set the group scope to Tenant.
- Enter a name for the group (e.g. "Survey Manager", "Report Viewer").
- Select the individual permissions to include.
- Choose which tenant(s) this group applies to, or mark it as a shared template.
- Click Save Group.
Assigning a Permission Group to a User
- Navigate to Tenant Users and select the target user.
- Click Assign Permission Group.
- Select one or more permission groups for the user.
- Click Save.
Changes take effect on the user's next page load or on their next session start.
Removing a Permission Group
- Navigate to the user's profile.
- Click the × next to the permission group to remove.
- Confirm the removal.
Important Rules
- Do not assign System permission groups to tenant users.
- Do not add System permissions into Tenant permission groups.
- Do not add integration API-key scopes into standard Tenant or System permission groups.
- A user with no permission groups assigned can log in but sees very limited functionality.
- Tenant Admins can assign permission groups from their own dashboard, but are limited to groups that belong to their tenant.