Role Based Access Control
RBAC allows you to set permissions for individual users on your account to limit what they can do.
To configure Roles, head to Settings -> Members.
Capabilities
A Role may have one or more capabilities as defined in the Roles section. The following table describes available capabilities:
| Capability | Description |
|---|---|
| Invite Members | Can invite external members to join the organization |
| Assign Roles | Can assign roles for members |
| Manage Billing & Plans | Can upgrade / downgrade Plan and set organization-level usage restrictions Can view & update billing information Can download invoices |
| Manage Workspaces | Can create/delete/rename workspaces Can assign workspace usage caps |
| Create API Keys | Can create a API key that provides full access to the Lumeo API |
| Design | Can Design analytics Pipeline and upload custom models Can view & create Dashboards |
| Deploy | Can provision gateways, cameras and input streams Can deploy existing analytics Can view & create Dashboards |
| Monitor | Can view Dashboards |
| Receive Notifications | Can receive Email or Push notifications. Cannot log into Lumeo console unless they have another Role. |
| Manage Notifications | Can manage Workspace member groups and Notification rules |
Organization-level Roles
These Roles apply across the entire organization.
| Permission | Owner | Billing | Manager |
|---|---|---|---|
| Invite Members | ✅ | ❌ | ✅ |
| Assign Roles | ✅ | ❌ | ✅ Except Owner and Billing Roles |
| Manage Billing & Plans | ❌ | ✅ | ❌ |
| Manage Workspaces | ✅ | ❌ | ✅ |
| Create API Keys | ✅ | ❌ | ✅ |
| Design | ❌ | ❌ | ✅ |
| Deploy | ❌ | ❌ | ✅ |
| Monitor | ❌ | ❌ | ✅ |
| Can Manage Notifications | ✅ | ❌ | ✅ |
| Can Receive Notifications | ✅ | ✅ | ✅ |
Workspace-level Roles
These Roles apply to a user for specific Workspaces.
| Permission | Design | Deploy | Monitor | Notifications |
|---|---|---|---|---|
| Assign Roles | ❌ | ❌ | ❌ | ❌ |
| Invite Members | ❌ | ❌ | ❌ | ❌ |
| Manage Billing & Plans | ❌ | ❌ | ❌ | ❌ |
| Manage Workspaces | ❌ | ❌ | ❌ | ❌ |
| Create API Keys | ❌ | ❌ | ❌ | ❌ |
| Design | ✅ | ❌ | ❌ | ❌ |
| Deploy | ❌ | ✅ | ❌ | ❌ |
| Monitor | ❌ | ❌ | ✅ | ❌ |
| Can Manage Notifications | ❌ | ✅ | ❌ | ❌ |
| Can Receive Notifications | ✅ | ✅ | ✅ | ✅ |
Role-assignment
For existing users
You can assign these roles by going to Settings -> Members in the Lumeo console.

For new users
You can also assign roles when inviting a new user to your organization.

Updated 16 days ago
Did this page help you?
