Skip to content

Users, Roles & Permissions ​

User and role management determines who can access the CRM, what data they can view, and which actions they are authorized to perform. This guide covers account administration, hierarchical data access, role configuration, and best practices for team organization.


User Management ​

Adding Users ​

Create user accounts to grant team members access to the platform.

  1. Navigate to Settings → Users.
  2. Click + Add User.
  3. Complete the required fields:
FieldDescription
NameFull name displayed across the platform
EmailLogin credential and notification address
PhoneContact number for telephony integration
Job TitleOrganizational title for reference
DepartmentFunctional group assignment
  1. Select one or more roles to define the user's permissions.
  2. Assign a reporting manager to establish hierarchy-based data access.
  3. Click Create User to finalize.

The user receives a welcome email containing login credentials and onboarding instructions.

INFO

User accounts count toward your subscription's active seat limit. Deactivated users do not consume active seats.

User Hierarchy ​

The organizational hierarchy governs data visibility throughout the platform. Each user's position in the reporting chain determines which records they can access.

PositionData Visibility
Executive / AdminAll records across the organization
ManagerOwn records plus all records owned by direct and indirect reports
Individual ContributorOwn assigned records only

TIP

The hierarchy is determined by the "Reports To" field on each user profile. Ensure every user has a correctly assigned manager to prevent unintended data access gaps.

Hierarchy-based access applies to the following entities: Leads, Deals, Contacts, Accounts, and Activities.


Default Roles ​

The platform includes five pre-configured roles covering common organizational structures.

RoleDescriptionTypical Use Case
Super AdminUnrestricted platform access including billing, subscription management, and system configurationOrganization owner or IT administrator
AdminFull access to all CRM features and settings; excludes billing managementOperations manager or CRM administrator
ManagerTeam oversight with access to team data, reporting capabilities, and limited settings accessSales manager or team lead
Sales RepFull management of own leads, deals, contacts, and activitiesField sales or inside sales representative
ViewerRead-only access to assigned and shared records; no create, edit, or delete permissionsStakeholders requiring visibility without modification rights

WARNING

The Super Admin and Admin roles cannot be deleted or have their core permissions reduced. They serve as system-level access guarantees.


Creating Custom Roles ​

Define roles tailored to specific job functions or departmental requirements.

  1. Navigate to Settings → Roles.
  2. Click + Create Role.
  3. Enter a descriptive role name (e.g., "Marketing Coordinator," "Support Agent," "Finance Reviewer").
  4. Configure permissions for each module:
ModuleAvailable Permissions
LeadsView, Create, Edit, Delete, Import, Export, Convert
ContactsView, Create, Edit, Delete
DealsView, Create, Edit, Delete, Change Stage
InvoicesView, Create, Edit, Delete, Send
WhatsAppView Conversations, Send Messages, Manage Templates
ReportsView, Export, Create Custom
SettingsView, Edit
UsersView, Create, Edit, Deactivate
  1. Optionally configure field-level visibility to hide sensitive fields from this role.
  2. Click Save to activate the role.

INFO

Custom roles can be duplicated to accelerate the creation of similar permission sets. Use the Duplicate action from the role list to create a copy for modification.


Assigning Roles ​

Roles are assigned during user creation or through subsequent profile edits.

  1. Navigate to Settings → Users.
  2. Select the target user from the list.
  3. In the Roles section, add or remove role assignments.
  4. Click Save Changes to apply.

Role changes take effect immediately upon save. The user's sidebar navigation and available actions update on their next page load.


Multiple Roles ​

Users may be assigned more than one role. When multiple roles are applied, the following rules govern effective permissions:

RuleBehavior
Additive PermissionsIf any assigned role grants a permission, the user possesses that permission
No Subtractive OverrideA restrictive role cannot revoke a permission granted by another role
Admin PrecedenceThe Admin or Super Admin role, if assigned, supersedes all other role restrictions

TIP

Use multiple roles to compose permissions for cross-functional team members. For example, assign both "Sales Rep" and "Marketing Viewer" to a user who needs lead management capabilities plus read access to campaign data.


Record Ownership ​

Every record (Lead, Deal, Contact, Account) has a designated Owner field that determines primary responsibility and access rights.

How Ownership Affects Visibility ​

ScenarioAccess Level
Record OwnerFull access (view, edit, delete) regardless of role restrictions
Owner's ManagerView and edit access through hierarchy
Owner's Manager's ManagerView and edit access through hierarchy (cascading upward)
Unrelated User (same role)No access unless explicitly shared or Admin
Admin / Super AdminFull access to all records regardless of ownership

WARNING

Records without an assigned owner are visible only to Admin and Super Admin users. Ensure all records have an active owner to prevent data from becoming inaccessible to the responsible team.


Transferring Ownership ​

Reassign record ownership when team members change responsibilities, leave the organization, or when workload rebalancing is required.

Individual Transfer ​

  1. Open the target record.
  2. Click the Owner field.
  3. Select the new owner from the user list.
  4. Confirm the transfer.

Bulk Transfer ​

  1. Navigate to the relevant list view (Leads, Deals, Contacts, or Accounts).
  2. Select multiple records using the checkbox column.
  3. Click Actions → Transfer Ownership.
  4. Choose the destination user.
  5. Confirm the bulk operation.

INFO

Ownership transfer updates the hierarchy-based visibility immediately. The previous owner loses access unless they are in the new owner's management chain or hold an Admin role.


Team Setup Best Practices ​

Follow these guidelines when configuring your team structure for optimal data governance and operational efficiency.

  1. Begin with default roles. Use the built-in Admin, Manager, and Sales Rep roles as your starting foundation. Create custom roles only when default roles do not adequately represent a job function.

  2. Establish the reporting hierarchy. Assign a manager to every user account. This ensures data visibility flows correctly through the organizational chain and prevents orphaned access.

  3. Group representatives under managers. Structure teams so that each manager oversees a logical group of contributors. This enables accurate team-level reporting and forecasting.

  4. Configure lead assignment rules. Define round-robin distribution or manual assignment workflows to ensure equitable and timely lead allocation.

  5. Apply the principle of least privilege. Grant only the permissions required for each role's function. Avoid assigning Admin access broadly.

  6. Validate access as a non-admin user. Log in with a representative user account to verify that sidebar visibility, record access, and action buttons reflect the intended permission set.

  7. Review roles quarterly. As team structures evolve, audit role assignments and hierarchy configurations to ensure continued alignment with organizational changes.


Related:

Next Step: Lead Management

ZenTraq CRM — Built for every industry.