Web APIUser Roles
User Roles
Which role grants each Web API permission.
Include chain
readonlyusermanageradminreadonly is the root and includes nothing.| Permission 18 total | readonly8 | user15 | manager18 | admin18 |
|---|---|---|---|---|
| Anchors2 | ||||
| anchors.manage | anchors.manage: not granted to readonly. | anchors.manage: not granted to user. | anchors.manage: granted here — manager is the minimum role. | anchors.manage: inherited by admin from manager. |
| anchors.read | anchors.read: granted here — readonly is the minimum role. | anchors.read: inherited by user from readonly. | anchors.read: inherited by manager from readonly. | anchors.read: inherited by admin from readonly. |
| Assignments2 | ||||
| assignments.manage | assignments.manage: not granted to readonly. | assignments.manage: granted here — user is the minimum role. | assignments.manage: inherited by manager from user. | assignments.manage: inherited by admin from user. |
| assignments.read | assignments.read: granted here — readonly is the minimum role. | assignments.read: inherited by user from readonly. | assignments.read: inherited by manager from readonly. | assignments.read: inherited by admin from readonly. |
| Buildings2 | ||||
| buildings.manage | buildings.manage: not granted to readonly. | buildings.manage: not granted to user. | buildings.manage: granted here — manager is the minimum role. | buildings.manage: inherited by admin from manager. |
| buildings.read | buildings.read: granted here — readonly is the minimum role. | buildings.read: inherited by user from readonly. | buildings.read: inherited by manager from readonly. | buildings.read: inherited by admin from readonly. |
| Devices4 | ||||
| devices.path.read | devices.path.read: not granted to readonly. | devices.path.read: granted here — user is the minimum role. | devices.path.read: inherited by manager from user. | devices.path.read: inherited by admin from user. |
| devices.position_overwrites.manage | devices.position_overwrites.manage: not granted to readonly. | devices.position_overwrites.manage: granted here — user is the minimum role. | devices.position_overwrites.manage: inherited by manager from user. | devices.position_overwrites.manage: inherited by admin from user. |
| devices.read | devices.read: not granted to readonly. | devices.read: granted here — user is the minimum role. | devices.read: inherited by manager from user. | devices.read: inherited by admin from user. |
| devices.status.read | devices.status.read: not granted to readonly. | devices.status.read: granted here — user is the minimum role. | devices.status.read: inherited by manager from user. | devices.status.read: inherited by admin from user. |
| Geofences2 | ||||
| geofences.manage | geofences.manage: not granted to readonly. | geofences.manage: not granted to user. | geofences.manage: granted here — manager is the minimum role. | geofences.manage: inherited by admin from manager. |
| geofences.read | geofences.read: granted here — readonly is the minimum role. | geofences.read: inherited by user from readonly. | geofences.read: inherited by manager from readonly. | geofences.read: inherited by admin from readonly. |
| Live pings1 | ||||
| livepings.read | livepings.read: granted here — readonly is the minimum role. | livepings.read: inherited by user from readonly. | livepings.read: inherited by manager from readonly. | livepings.read: inherited by admin from readonly. |
| Orders2 | ||||
| orders.manage | orders.manage: not granted to readonly. | orders.manage: granted here — user is the minimum role. | orders.manage: inherited by manager from user. | orders.manage: inherited by admin from user. |
| orders.read | orders.read: granted here — readonly is the minimum role. | orders.read: inherited by user from readonly. | orders.read: inherited by manager from readonly. | orders.read: inherited by admin from readonly. |
| Pings1 | ||||
| pings.read | pings.read: granted here — readonly is the minimum role. | pings.read: inherited by user from readonly. | pings.read: inherited by manager from readonly. | pings.read: inherited by admin from readonly. |
| Transponders2 | ||||
| transponders.manage | transponders.manage: not granted to readonly. | transponders.manage: granted here — user is the minimum role. | transponders.manage: inherited by manager from user. | transponders.manage: inherited by admin from user. |
| transponders.read | transponders.read: granted here — readonly is the minimum role. | transponders.read: inherited by user from readonly. | transponders.read: inherited by manager from readonly. | transponders.read: inherited by admin from readonly. |
the table scrolls sideways on a narrow screen; the permission column stays put.
admin grants no permission of its own here — it holds exactly what it inherits, the same 18 permissions as manager. Anything more it can do lies outside this API.
Every cell carries its state as a sentence for screen readers — the glyph and the tint are never the only cue. Permission names link to the matching entry on the Permissions page.