Role Definitions
This guide provides detailed descriptions of each role in Taskr, including their capabilities, restrictions, and intended use cases.Role Hierarchy
Roles are hierarchical - higher roles include all permissions of lower roles, plus additional capabilities:Owner
The Owner role has complete, unrestricted access to the entire organization.Description
Owners are the ultimate authority within an organization. This role should be reserved for business owners, principals, or directors who need full control over all aspects of the platform, including billing and the ability to delete the organization.Intended Users
- Business owners
- Company principals/directors
- Founding partners
- Anyone with fiduciary responsibility
What Owners Can Do
Organization Control- ✅ Update organization name, logo, and settings
- ✅ Delete the entire organization
- ✅ Transfer ownership to another user
- ✅ Manage billing and subscription
- ✅ Access and modify all organization settings
- ✅ Create, update, and delete teams
- ✅ View all teams and their members
- ✅ Invite new members to the organization
- ✅ Remove members from the organization
- ✅ Change any member’s role (including to Owner)
- ✅ View all member information
- ✅ Full create, read, update, delete on all resources
- ✅ Export data from any resource
- ✅ Assign work to any team member
- ✅ Complete jobs and mark milestones
- ✅ Send invoices and quotes
- ✅ Void invoices
- ✅ Reconcile transactions
- ✅ Share documents
- ✅ Schedule reports
Restrictions
Owners have no restrictions within their organization.Best Practices
Admin
The Admin role provides full operational control without the ability to delete the organization or manage billing.Description
Admins can do almost everything an Owner can, except for the most critical organization-level actions. This is the ideal role for trusted staff who manage day-to-day operations but shouldn’t have access to billing or the ability to accidentally delete the organization.Intended Users
- Office managers
- Operations directors
- Senior administrators
- IT administrators
- Trusted senior staff
What Admins Can Do
Organization Control- ✅ Update organization settings (name, logo, preferences)
- ❌ Cannot delete the organization
- ❌ Cannot transfer ownership
- ✅ Manage billing (view and update payment methods)
- ✅ Create, update, and delete teams
- ✅ View all teams and their members
- ✅ Invite new members to the organization
- ✅ Remove members from the organization
- ✅ Change member roles (except to Owner without being Owner)
- ✅ View all member information
- ✅ Full create, read, update, delete on all resources
- ✅ Export data from any resource
- ✅ Assign work to any team member
- ✅ Complete jobs and mark milestones
- ✅ Send invoices and quotes
- ✅ Void invoices
- ✅ Reconcile transactions
- ✅ Share documents
- ✅ Schedule reports
Key Differences from Owner
Best Practices
Manager
The Manager role provides team-level control with full access to business operations but no organization-level settings.Description
Managers can handle most day-to-day operations including inviting team members and performing all business functions. They cannot modify organization settings, create/delete teams, or change member roles. This is ideal for team leads and supervisors.Intended Users
- Team leads
- Supervisors
- Project managers
- Senior technicians
- Department heads
What Managers Can Do
Organization Control- ❌ Cannot update organization settings
- ❌ Cannot delete the organization
- ❌ Cannot transfer ownership
- ❌ Cannot manage billing
- ❌ Cannot create or delete teams
- ✅ Update team information (name, description)
- ✅ View all teams
- ✅ Invite new members to the organization
- ✅ Remove members from the organization
- ❌ Cannot change member roles
- ✅ View all member information
- ✅ Full create, read, update, delete on customers
- ✅ Full create, read, update, delete on jobs
- ✅ Full create, read, update, delete on invoices, quotes
- ✅ Full create, read, update, delete on assets
- ✅ Full create, read, update, delete on transactions
- ✅ Export data from resources
- ✅ Assign work to team members
- ✅ Complete jobs and mark milestones
- ✅ Send invoices and quotes
- ✅ Void invoices
- ✅ Reconcile transactions
- ✅ Share documents
- ✅ View and export reports
- ✅ View settings
- ❌ Cannot update settings
Key Differences from Admin
Best Practices
Member
The Member role provides basic access for daily work without administrative capabilities.Description
Members can perform essential day-to-day tasks like viewing data, creating records, and updating their own work. They cannot delete most records, export data, or perform administrative functions. This is the default role for most employees.Intended Users
- Field technicians
- General employees
- Contractors
- New hires
- Part-time staff
What Members Can Do
Organization Control- ❌ Cannot update organization settings
- ❌ Cannot delete the organization
- ❌ Cannot transfer ownership
- ❌ Cannot manage billing
- ❌ Cannot create, update, or delete teams
- ✅ View teams they belong to
- ❌ Cannot invite members
- ❌ Cannot remove members
- ❌ Cannot change roles
- ✅ View other members
Settings
- ✅ View settings (their own preferences)
- ❌ Cannot update organization settings
Key Differences from Manager
Best Practices
Role Comparison Summary
Organization & Admin Capabilities
Business Operations Capabilities
Choosing the Right Role
Decision Tree
Quick Reference
← Back to Permissions Overview | Permission Matrix →