Docs / Roles & Permissions

Roles & Permissions

SAR Portal uses role-based access control to manage what users can do within the system.

Available Roles

Admin

Full access to all features.

Admins can:

Recommended for:

Case Manager

Full case management capabilities.

Case Managers can:

Case Managers cannot:

Recommended for:

Reviewer

Review and limited editing capabilities.

Reviewers can:

Reviewers cannot:

Recommended for:

Read Only

View-only access for oversight.

Read Only users can:

Read Only users cannot:

Recommended for:

Permission Matrix

Action Admin Case Manager Reviewer Read Only
View cases Yes Yes Yes Yes
Create cases Yes Yes No No
Edit cases Yes Yes Limited No
Close cases Yes Yes No No
Upload documents Yes Yes Yes No
Delete documents Yes No No No
AI analysis Yes Yes View only No
Apply redactions Yes Yes No No
Manage users Yes No No No
Change settings Yes No No No
Manage billing Yes No No No
View audit logs Yes Yes Limited Yes
Delete account Yes No No No

Choosing the Right Role

Single User Organizations

Small Teams (2-5)

Larger Teams

Role Assignment

During Invitation

  1. Enter user email
  2. Select role from dropdown
  3. Send invitation
  4. User receives role upon activation

Changing Roles

Admins can change roles:

  1. Go to Users
  2. Find the user
  3. Click role dropdown
  4. Select new role
  5. Change is immediate

Role Change Notifications

Users are not automatically notified of role changes. Consider informing them directly.

Role Best Practices

Limit Admin Access

Regular Review

Separation of Duties

Training by Role

Special Considerations

Last Admin Rule

The system prevents removing the last admin:

Self-Role Changes

Users cannot change their own role. Another admin must make the change.

Audit Trail

All role assignments and changes are logged in the audit trail.