Organizely gives every team member a role (Admin, Manager, or Worker), and the Roles and Permissions matrix lets an admin fine-tune exactly which parts of the app each role can reach. You can also override permissions for a single person from their profile. This page explains the matrix, what each permission area controls, and how the defaults map to the classic three-tier setup.
The permission matrix lives at Team → Roles and Permissions. It is admin-only: managers and workers can't open it, and the Admin role can never be restricted.
Note: Setting custom permissions for one individual person is also admin-only. That is done from the Edit User dialog under Team → Manage, not from the matrix.
The matrix is a grid with one row per role and one checkbox column per feature area. A checked box means that role can access that area.
- The Admin row is locked and shows a "Full access" badge. Every box is checked and can't be unchecked, so your organization can never lock itself out of admin.
- Each non-admin role has its own Save button at the end of its row, so changes to one role are saved independently of the others.
- A saved change applies to everyone who holds that role, unless a specific user has a custom override on their profile.
To change what a role can access:
Go to Team → Roles and Permissions.
Find the role's row.
Check the areas you want to grant, or uncheck the ones you want to remove.
Click Save at the end of that row.
If you never touch the matrix, roles behave exactly like the classic three-tier system:
- Admin: full access to everything. Always locked on, never restricted.
- Manager: access to every area except Billing, API keys, and Imports, which stay admin-only by default.
- Worker: minimal operational access. Workers can still view products and orders like any team member, and by default they can see the Manufacturing section (so they can be assigned work orders on the Pro plan).
Any role you edit moves off the defaults and from then on uses exactly the boxes you checked.
Each column in the matrix maps to one feature area:
- Team and users: invite and manage team members and their roles.
- Activity logs: access to activity and log views.
- Automations: the Automations section (Beta; also requires the Pro plan or higher).
- Demand planning: the Demand Planning section (forecasts, reorder, and stock alerts).
- Reports: the on-demand Reports section.
- Integrations: the Integrations section and its settings.
- Settings: the general Settings section (organization settings, notifications, and advanced). Billing, API keys, and Imports have their own separate toggles.
- Catalog (bulk edit and settings): Catalog bulk edit and Catalog-related settings. Viewing products is available to all team members, so it isn't gated by this column.
- Warehouse (bulk edit and settings): Warehouse bulk edit and warehouse settings. This permission also gates stock adjustments and custom adjustment reasons.
- Orders (bulk edit and settings): Orders bulk edit and order settings. Viewing orders is available to all team members.
- Billing: billing and subscription settings (admin-only by default).
- API keys: create, list, and revoke API keys for the public Business Intelligence API (admin-only by default).
- Imports: the Stocky import tools (admin-only by default).
- Manufacturing: shows or hides the Manufacturing section (Work Orders and related pages). Requires the Pro plan (Raw-Material Tracking); granting it to a worker lets that person be assigned work orders.
Note: Permissions layer on top of plan limits. A feature that needs a higher plan (for example Automations or Manufacturing, which require the Pro plan) stays unavailable even when the role has the box checked, because plan limits apply first.
Sometimes you want to give one teammate more or less access than their role provides, without changing the role for everyone. An admin can do this per user:
Go to Team → Manage.
Edit the person you want to change.
Turn on "Custom permissions for this user".
Check exactly the areas that person should have. These boxes are authoritative: you can grant more than their role allows, or restrict below it.
Click Save Changes.
When the toggle is off, the person inherits their role's permissions, and the dialog shows those inherited areas for reference.
Note: Turning an existing custom override off in this dialog does not remove it yet. The saved override stays in effect until you change it. Turn the toggle back on to edit the specific areas.