Skip to content
Help
Open Arbour

Team

Permissions reference

Every permission a role can hold, what View all changes, and which keys need others alongside them.

Updated 6 Sept 2026

A role is a set of ticks. Open one from the Roles tab and the editor lays every permission out in groups, with a Save at the foot. A member holds exactly what their role holds, and nothing combines or inherits: two roles are never added together, because a member has one.

Open roles

View, and view all

Two areas draw a line between seeing the screen and seeing everything on it. View contacts and View enquiries and bookings open the surface. The matching View all key decides how much of it is populated.

Without View all enquiries and bookings, a member sees the enquiries and bookings they are assigned to, and nothing else. Without View all contacts, they see contacts reached by that assigned work, plus the contacts they created themselves. Give them enquiry visibility across the board but not contacts, and every contact attached to any job comes into view instead.

The editor prints these notes beside the two keys, so the choice is visible while you are making it.

Heads up

Out of scope reads as absent

Scope is merged into the query, not checked afterwards. A record outside a member's scope answers as if it never existed, rather than as a locked door with a name on it.

Permissions that need other permissions

Three keys refuse to stand alone.

  • View analytics and reports needs View enquiries and bookings, View all enquiries and bookings and View invoices and payments. Reports total up every job and every payment, so a role that could see the total without being able to open what made it up would be reading numbers it cannot check.
  • Manage branding needs View branding.
  • Delete enquiries and bookings needs Edit, move and close enquiries and bookings. Deleting a record outright is strictly more than editing it, so a role that could erase a job it may not touch would make no sense.

The editor locks both directions. A dependent cannot be ticked until its prerequisites are, and the checkbox explains what it needs. A prerequisite cannot be unticked while something still depends on it, and that checkbox says what is holding it. The API enforces the same rule, so nothing gets in by another door.

Every permission

Email

PermissionKey
Connect and use your own emailemail.connect
View and send team emailsemail.use_team

Contacts

PermissionKey
View contactscontacts.view
View all contactscontacts.view_all
Create contactscontacts.create
Edit contacts and notescontacts.edit
Delete contactscontacts.delete
Merge duplicate contactscontacts.merge
Manage custom contact fieldscontact_fields.manage

Enquiries and bookings

PermissionKey
View enquiries and bookingspipeline_items.view
View all enquiries and bookingspipeline_items.view_all
Create enquiries and bookingspipeline_items.create
Assign members to enquiries and bookingspipeline_items.assign
Edit, move and close enquiries and bookingspipeline_items.edit
Delete enquiries and bookingspipeline_items.delete
Manage pipeline stages and automationspipelines.manage
Manage custom fields for enquiries and bookingspipeline_fields.manage
Send messages to clients through the portalclient_messages.send
Rotate and revoke client portal linksportal_access.manage
View run sheetsrun_sheets.view
Edit run sheetsrun_sheets.manage

Calendar

PermissionKey
Manage anyone's unavailabilitycalendar.busy.manage_all
Manage calendar settingscalendar_settings.manage
Manage members' calendar feedscalendar_feeds.manage_all

Quotes and packages

PermissionKey
View quotesquotes.view
Edit and send quotesquotes.manage
View packagespackages.view
Manage packagespackages.manage

Payments

PermissionKey
View invoices and paymentspayments.view
Create, edit, issue and void invoicespayments.manage_invoices
Record manual paymentspayments.record
Void paymentspayments.void
Manage payment settingspayment_settings.manage
Manage the Stripe connectionstripe.manage

Analytics and reporting

PermissionKey
View analytics and reportsreporting.view

Contracts

PermissionKey
View contractscontracts.view
Send and retry contractscontracts.manage
Manage contract templatescontract_templates.manage

Questionnaires

PermissionKey
View questionnairesquestionnaires.view
Send, edit and answer questionnairesquestionnaires.manage
Manage questionnaire templatesquestionnaire_templates.manage

Integrations

PermissionKey
Manage accounting integrationsaccounting_integrations.manage
Manage outbound webhookswebhooks.manage
Manage API keysapi_keys.manage
Import data from other toolsimports.manage

AI writing

PermissionKey
Use the AI assistantai.use
Manage AI settingsai_settings.manage

Branding

PermissionKey
View brandingbranding.view
Manage brandingbranding.manage

Organisation

PermissionKey
Manage the contact formform.manage
Edit and delete other members' notesactivities.moderate
Manage automationsautomations.manage
Export organisation dataorganization.export
Manage organisation settingsorganization.settings.manage
Manage customer communication defaultscommunications.manage
Manage membersmembers.manage
Invite membersinvitations.manage
Manage rolesroles.manage

The three roles you start with

Owner holds everything, permanently and by definition. It stores no keys at all: the flag on the role bypasses each check, which is why an owner picks up new permissions the day they ship. It cannot be renamed, re-permissioned or deleted.

Admin is seeded with every key in the table above, but it is a normal role. Untick something and it is gone.

Member is seeded for the work rather than the settings: viewing, creating and editing contacts, the same for enquiries and bookings, viewing and editing run sheets, viewing and sending quotes, viewing invoices and payments, viewing contracts, viewing and sending questionnaires, the AI writing assistant, and viewing branding. Neither View all key is included, so a new member starts on their own assigned work.

See Team and roles for creating a role and moving people onto it.

Keep reading
  • Team

    Team and roles

    Invite people, give them a role, and decide what each role can reach.

  • Reports

    Reports

    The sales and financial reports, the controls they share, and how to save or export one.

  • Client portal and forms

    Branding

    Set the logos, portal banner, colours, font and document layout for your organisation.