Roles and permissions
The group's roles — the ready ones and your own — and each role's permissions, page by page.
Open the page in SchoolOSWhat it is for
A role is a set of permissions: the tenant owner, the principal, the teacher… Here the roles are seen, a custom role added, and each role's permissions set in a table: “View” and “Manage” for every page. Roles are given to staff on the Staff page.
Who uses it
The page opens for whoever holds “View roles and permissions”, to look only, or “Manage roles and permissions”, to work in it. In the built-in roles: Owner. A group grants these to any role under Settings → Roles and permissions, and everyone sees only what is within their own scope.
Step by step
- Press the role's name or the pencil on its row to open its permissions table.
- Tick “View” to open the page to read, and “Manage” to add, change and delete there, then “Save permissions”.
- For a custom role: “+ Add role”, type its code and name, then set its permissions from its page.
How it works
Ready roles come with the system and their permissions can be changed, except the Owner role, which always holds every permission. A new role starts with no permissions. In the table, ticking “Manage” ticks “View”, and unticking “View” unticks “Manage”; a manage permission can cover several pages together, so ticking or unticking it shows on all of them. You cannot put in a role a permission you do not hold where the role is used; a role given beyond your reach opens read-only. A save applies to everyone holding the role from their next request. A role is not renamed or deleted. Only someone holding “Manage roles and permissions” changes roles.
On the page
- Each role's code, kind — system or custom — and number of permissions. Its name or the pencil opens its permissions table.
- “+ Add role”: the code and the name; its permissions are then set from its page.
Questions
- How do I make a role that sees a page but cannot change it?
- Tick only “View”. Mind that unticking “View” on a page removes its manage permission from every page that shares it.
- Why are some boxes grey, or the whole table locked?
- You give only what you hold. A role given beyond your reach, or carrying permissions you lack, is locked; the Owner role is never changed.
- Where do I give someone a role?
- On the Staff page: the pencil → “Roles” → “Assign”.