Open the member
Members & access in your dashboard, then pick the person.
Granting access is a security decision, so it should not rest on guessing what a word means. Below is every preset against every menu — and the four powers that stay with you as the owner no matter which preset you pick.
A new member can answer chats the moment they join. Presets are only about the dashboard — reports, settings, the knowledge base, billing. Their badge reads "Chats only" and that is a complete, working state, not a broken one.
Where they land after signing in follows from that. A member with no dashboard permissions is taken to theAgent Portal — the tool for answering people. A member with any permission at all can also open the dashboard. So "grant access" really means "additionally let this person into the dashboard".
RW = can see and change. R = can see only. — = the menu does not appear.
| Menu | Admin | Manager | Support Lead | Billing viewer | Knowledge editor |
|---|---|---|---|---|---|
| Conversations | RW | RW | RW | — | R |
| Live Chat | RW | RW | RW | — | — |
| Leads | RW | RW | RW | — | — |
| Knowledge base | RW | RW | R | — | RW |
| Domains | RW | RW | — | — | — |
| Channels & mobile apps | RW | RW | — | — | — |
| Dashboards & analytics | R | R | R | R | — |
| Integrations | RW | RW | — | — | — |
| Settings, Conductor & Policies | RW | RW | — | — | — |
| Security | R | R | — | — | — |
| Getting started | RW | RW | — | — | — |
| Billing | R | R | — | R | — |
| Members | RW | R | R | — | — |
| Provider keys | — | — | — | — | — |
"Billing: R" means the plan, the usage figures and the payment history are visible. Changing the plan or the payment method is not included in any preset — see the next section. Provider keys is a dash the whole way across on purpose: that menu only ever appears for the account owner.
Not with a preset, not with the custom grid, not by asking us.
1. Changing the plan or payment. Buying, upgrading, downgrading, altering the payment method. Members with Billing access can look; only you can move money.
2. Reading or replacing AI provider keys. Your own OpenAI, Claude or Gemini keys bill your account. Nobody else can read them and nobody else can rotate them. Note that read is withheld as well as write — a key that can be read is a key that can be used elsewhere.
3. Deleting a domain or the account.
4. Granting or revoking anyone's permissions. This is the load-bearing one. An Admin can manage the roster — invite, remove, edit schedules — but if they could also re-scope permissions, every other restriction would be advisory: they could simply grant themselves whatever they lacked. So the two were deliberately split. An Admin who tries is refused.
This is not a UI convention. The restriction is applied when a grant is saved, applied again every time a grant is read, and applied a third time inside the permission check itself. A grant edited directly in the database to carry one of these cannot use it.
A few further screens are owner-only for the same reason, even though they are not part of that grid: approving a member's change of sign-in email, and issuing a key for a mobile app. Anything that changes who someone is, or creates a new way into your account, comes back to you.
Members & access in your dashboard, then pick the person.
The permissions card lists the five presets and Custom. Each shows a one-line description of what it opens. Choosing a preset fills the grid for you; you can still switch to Custom and adjust afterwards.
The check runs when their dashboard loads, so a reload — or their next sign-in — is when the change takes effect for them.
The badge on the member list is derived from what was actually saved, not from the label you clicked. A preset shows its name; a hand-adjusted grid shows a count such as "6 permissions". That is why it can change from "Manager" to a number after you tick one extra box — the grant is honest about being custom now.
To take access away, set the member back to no permissions. They keep answering chats; they lose the dashboard.
Everything the job needs, and nothing that configures the business:
What you will not see is the dashboard: reports, settings, the knowledge base, channels, billing. If you open it and it looks empty, that is a permission state and not a fault — ask the account owner for the access you need, naming the menu rather than a preset. "I need to edit the knowledge base" is an easier request to act on than "I need Manager".
Members & access → pick the person → pick the smallest preset that covers the job. Money, keys, deletion and permissions stay with you.