Spensify

Role & Permissions

Roles group access rights so that users see the menus and actions required for their responsibilities.

Access requirements

  • View Roles (setting.role.view) shows the menu, role list, role details, and assigned permissions in read-only mode.
  • Manage Roles (setting.role.manage) includes view access and enables creating, editing, duplicating, deleting, and assigning permissions to roles.

Users, Teams, and Roles each have separate View and Manage permissions. A Manage permission also grants access to its corresponding menu and read endpoints; it does not have to be paired manually with View.

Understand available roles

The available roles may vary according to company settings. Review each role's description and access rights before assigning it to a user.

Some roles provided by the application cannot be edited or deleted.

Create a role

This action requires Manage Roles.

  1. Open Settings > Role & Permissions.
  2. Select New Role.
  3. Enter the role name and description.
  4. Enable Default Role only if new users should receive this role automatically.
  5. Search for or open the required permission groups.
  6. Select permissions individually or use Select All within a group.
  7. Select Save Role.

Update a role

  1. Find the role in the list.
  2. Select Edit.
  3. Update its description, default status, or permissions.
  4. Review any important permissions being removed.
  5. Save the changes.

Role changes affect every user who has that role.

Duplicate a role

Use Duplicate to create a role from an existing access configuration. Change the copied role's name and adjust its permissions before saving.

Delete a role

A role can only be deleted when deletion is allowed and the role is no longer needed. Before deleting:

  1. Check which users have the role.
  2. Assign replacement roles where necessary.
  3. Confirm the deletion.

Access management principles

  • Grant the minimum access needed.
  • Separate creators and approvers for important transactions.
  • Review roles when responsibilities change.
  • Avoid making every user an administrator.

Next

Continue to Manage Teams.

On this page