← Docs / Guides
Team roles
What each team role can see and change in a company — owner, admin, accountant, manager, developer, viewer.
Every member of a company has one role. The role decides which modules the member can read, which they can change, and which parts of Settings they can open. Roles are set under Settings → Team by an owner or an admin.
Roles at a glance
| Role | Accounting modules | Settings | Team | Company |
|---|---|---|---|---|
| Owner | read and change everything | all tabs | invite, change roles, remove | edit profile, archive, delete |
| Admin | read and change everything | all tabs | invite, change roles, remove | edit profile |
| Accountant | read and change everything | none | — | — |
| Manager | read everything; change sales, purchases, partners, catalog, inventory, e-commerce, POS, cash, files, projects | none | — | — |
| Developer | read everything | API keys, Webhooks | — | — |
| Viewer | read everything | none | — | — |
What each role allows
Owner
- Full access to every module: sales, purchases, partners, catalog, inventory, ledger, bank, cash, payroll, HR, assets, declarations, reports and the rest.
- Opens every Settings tab: API keys, Webhooks, Billing, Compliance, Team, Companies, Migration, Audit log.
- Manages the team: invites members, changes their roles, removes them.
- Edits the company profile and is the only role that can archive or delete the company.
- The owner role cannot be changed or removed from the Team page.
Admin
- The same access to modules and Settings as the owner.
- Manages the team and edits the company profile.
- Cannot archive or delete the company.
Accountant
- Full read and write access to every accounting module — the same data access as an owner or admin.
- No access to Settings: cannot manage the team, API keys, webhooks, billing, compliance credentials or companies.
Manager
- Reads everything.
- Creates and edits documents in the day-to-day modules: sales, purchases, partners, catalog, inventory, e-commerce, POS, cash, files and projects.
- Everything else is read-only: ledger postings, bank, payroll, HR, assets, declarations, agreements, production, transport, fleet, consolidation and reference data.
- No access to Settings.
Developer
- Reads everything.
- Opens Settings → API keys and Settings → Webhooks and manages both.
- Cannot change any accounting data.
Viewer
- Reads everything; cannot change anything.
- No access to Settings.
Rules that apply to all roles
- A member cannot change their own role.
- Only owners and admins can invite members, change roles or remove members.
- New members join with the role chosen in the invitation; it can be changed later on the Team page.
- API keys have their own permission scopes, independent of team roles — see the API conventions guide.