Skip to main content
The following information applies only to Unstructured organizational accounts, which are available only for Unstructured Business accounts. To upgrade from an Unstructured Let’s Go or Pay-As-You-Go account to a Business account, contact your Unstructured sales representative, or email Unstructured Sales at sales@unstructured.io.
Roles in Unstructured are part of the role-based access control (RBAC) system that manages permissions for members of organizational accounts and their workspaces. For Business SaaS accounts, roles do not apply to personal accounts or personal workspaces. Any member with the Super Administrator role in an organizational account can manage the roles of that organizational account’s members and of members in the organizational account’s workspaces. Any member with the Super Administrator role in an organizational account or the Workspace Admin role in a workspace within an organizational account can manage the roles of that workspace’s members. A Super Administrator assigns an organizational account member’s initial role when the member is added to the organizational account. That role can be changed later. A Super Administrator or Workspace Admin assigns a workspace member’s initial role when the member is added to the workspace. That role can be changed later.

Site administrator role

The site administrator role is available only in dedicated instance and in-VPC deployments of Unstructured Business.
The site administrator (site admin) is a deployment-level role, independent of any organizational account. It controls access to Site Settings, where deployment-wide configuration lives. A site admin can: An IdP group grants site administrator access. See Site administrator access.

Organizational account roles

Organizational account roles include:
  • Super Administrator: Has access to all permissions, and has access to all resources created in an organization.
  • Account Member: Able to be added to workspaces with a workspace role.
  • Billing Administrator: Able to view billing information, usage, and account members.
These roles include the following permissions:

Workspace roles

Workspace roles include:
  • Viewer: Ability to view all connectors and workflows that exist in the workspace in a read-only capacity.
  • Operator: Ability to create, run, schedule, and delete any workflows that exist in the workspace. Can view connectors but cannot create or edit them.
  • Developer: Ability to create and edit all connectors and workflows that exist in the workspace.
  • Workspace Administrator: Ability to manage users on the workspace (invite, remove or change roles) as well as edit the workspace.
These roles include the following permissions: Super Administrators in an organizational account have complete access to all of the organizational account’s workspaces, regardless of whether they are a member of those workspaces.