Backoffice Roles

Introduction

Backoffice tenants can be configured into one of three roles. Each role has a set of permissions that alter functionality and visibility of content on the Backoffice.

The role of the current tenant can be viewed by clicking the user icon located in the top-right of the page.

This page will describe each of the available roles and their permissions.

If the Reviewer Role is unavailable, contact Daon Support for further information.

Admin Role

The Admin role is granted the full functionality and visibility of the Backoffice application.

Page/ FunctionalityView AccessCreate/ Edit/ Delete
Process DefinitionsFull search and view accessFull create, edit, and delete. Admin users can also search and export Process Definitions
Process TokensFull search and view accessFull create, edit, and delete access
StatisticsFull search and view access
Process InstancesFull search and view accessEdit status, provide manual review, and delete. Admin users can also search and export Process Instances
For ReviewFull search and view accessSearch, export, and delete Process Instances in the Review status
Cloud FunctionsFull search and view accessFull create, update status, and delete access
Cloud SecretsFull search and view accessFull create, edit, and delete access.
API KeysFull search and view accessFull create, edit, and delete access
ThemesFull search and view accessFull create, edit, and delete access
Custom FormsFull search and view accessFull create, edit, and delete access
Custom PagesFull search and view accessFull create, edit, and delete access
Email TemplatesFull search and view accessFull create, edit, and delete access
WebhooksFull search and view accessFull create and test access
WatchlistsFull search and view accessFull create, edit, and delete access
OIDC AuditsFull search and view access
OIDC ClientsFull search and view accessFull create, edit, and delete access
OIDC TestsFull search and view accessFull create, test, and delete access
Admin SessionsFull search and view access
AuditsFull search and view access

Audit Role

The Audit role grants viewer access to all areas of the Backoffice application. This role can also search and export Process Instance search results. A complete list of permissions can be viewed below.

Page/ FunctionalityView AccessCreate/ Edit/ Delete
Process DefinitionsFull search and view accessNo access
Process TokensFull search and view accessNo access
StatisticsFull search and view access
Process InstancesFull search and view accessSearch and export of Process Instance search results
For ReviewFull search and view accessNo access
Cloud FunctionsFull search and view accessNo access
Cloud SecretsFull search and view accessNo access
API KeysFull search and view accessNo access
ThemesFull search and view accessNo access
Custom FormsFull search and view accessNo access
Custom PagesFull search and view accessNo access
Email TemplatesFull search and view accessNo access
WebhooksFull search and view accessNo access
WatchlistsFull search and view accessNo access
OIDC AuditsFull search and view access
OIDC ClientsFull search and view accessNo access
OIDC TestsFull search and view accessNo access
Admin SessionsFull search and view access
AuditsFull search and view access

Reviewer Role

The Reviewer role is designed to provide limited access to the Backoffice application for users to review the status of Process Instances and act on Process Instances that require a manual review. For more information on manual review, see the Manual Review Guide.

Page/ FunctionalityView AccessCreate/ Edit/ Delete
Process DefinitionsNo accessNo access
Process TokensNo accessNo access
StatisticsNo access
Process InstancesFull search and view accessSearch and export of Process Instance search results
For ReviewFull search and view accessSearch, export, and delete Process Instances in the Review status
Cloud FunctionsNo accessNo access
Cloud SecretsNo accessNo access
API KeysNo accessNo access
ThemesNo accessNo access
Custom FormsNo accessNo access
Custom PagesNo accessNo access
Email TemplatesNo accessNo access
WebhooksNo accessNo access
WatchlistsNo accessNo access
OIDC AuditsNo access
OIDC ClientsNo accessNo access
OIDC TestsNo accessNo access
Admin SessionsNo access
AuditsNo access

Reviewer with Watchlists

This role is a composite of the Reviewer Role that includes permissions to view and modify watchlist members.

Page/ FunctionalityView AccessCreate/ Edit/ Delete
Process DefinitionsNo accessNo access
Process TokensNo accessNo access
StatisticsNo access
Process InstancesFull search and view accessSearch and export of Process Instance search results
For ReviewFull search and view accessSearch, export, and delete Process Instances in the Review status
Cloud FunctionsNo accessNo access
Cloud SecretsNo accessNo access
API KeysNo accessNo access
ThemesNo accessNo access
Custom FormsNo accessNo access
Custom PagesNo accessNo access
Email TemplatesNo accessNo access
WebhooksNo accessNo access
WatchlistsFull search and view accessAbility to add and delete members from an existing Watchlist.
OIDC AuditsNo access
OIDC ClientsNo accessNo access
OIDC TestsNo accessNo access
Admin SessionsNo access
AuditsNo access
Type to search, ESC to discard
Type to search, ESC to discard
Type to search, ESC to discard