*:* |
team |
Everything at the team tier. Never reaches instance:* or org:*. |
*:read |
team |
Read every team-visible resource; no AI spend, no mutation. |
audit:read |
team |
Read the audit trail. |
chat:use |
team |
Talk to the model: chat, the agent, translation, AI tools.
Metered. |
documents:delete |
team |
Delete text documents. |
documents:read |
team |
Read text documents. |
documents:write |
team |
Create and edit text documents. |
features:manage |
team |
Turn features on and off for teams. |
files:delete |
team |
Delete repository documents. |
files:manage |
team |
Steward a document: change visibility, share and revoke. Owners hold
it by owner-ok; a manage grant delegates it for one document. |
files:read |
team |
Open, download and search repository documents; read provenance and
the knowledge graph. |
files:write |
team |
Upload documents and new versions. |
instance:* |
instance |
Everything at the instance tier; the operator (superadmin). |
instance:manage |
instance |
Instance administration: branding, localization policy, quotas,
orgs, metrics. |
jobs:execute |
team |
Claim, heartbeat, complete and fail jobs offered to a pull executor.
Held only by a worker token, bound to one executor; reaches no team data
and starts no run. |
localization:manage |
team |
Import and export catalogs, queue AI drafts, discard machine
drafts. |
localization:read |
team |
See the Localization Manager's coverage and messages. |
localization:review |
team |
Approve or send back a colleague's translation (never one's
own). |
localization:translate |
team |
Submit translations. |
members:manage |
team |
Add and remove team members and set their roles. |
memory:read |
team |
Read the agent's memory. |
memory:write |
team |
Write to the agent's memory. |
models:serve |
team |
Register a model executor for the team. |
notes:delete |
team |
Delete notes. |
notes:manage |
team |
Share notes one does not own. |
notes:read |
team |
Read notes. |
notes:write |
team |
Create and edit notes. |
org:* |
org |
Everything at the company tier. Never reaches instance:*. |
org:manage |
org |
Administer the company: teams and members. Manages, does not read,
team data (TEN-2a). |
org:read |
org |
See the company, its teams, members and audit trail. |
org:read-data |
org |
Read team-visible notes, documents and search results across every
team in the company (TEN-2h). Never private ones; never a write; never
AI spend. Held by the org_reader role. |
quota:manage |
team |
Set quotas. |
quota:read |
team |
See quotas. |
research:use |
team |
Use the research surfaces. |
roles:manage |
team |
Create and edit team roles. |
roles:read |
team |
See the team's roles and what they grant. |
settings:manage |
team |
Team settings: tokens, feature flags, tool activation, the glossary,
seeding, the audit trail. |
tasks:delete |
team |
Delete tasks. |
tasks:read |
team |
Read tasks. |
tasks:write |
team |
Create and edit tasks. |
team:create |
team |
Create a team in the company. |
team:delete |
team |
Delete a team. |
team:read |
team |
See a team in the company. |
team:write |
team |
Rename a team in the company. |
tokens:manage |
team |
Issue and revoke API tokens for the team. |
tools:invoke |
team |
Call tools from the agent or a workflow step; each tool then checks
its own permission. |
webhooks:manage |
team |
Configure outbound webhooks. |
workflows:read |
team |
See workflow definitions, runs and triggers. |
workflows:run |
team |
Start and cancel runs. An S3 key needs this scope for its uploads to
fire triggers. |
workflows:write |
team |
Publish workflows and manage triggers. |