Breadcrumbs

Users, Roles and Permissions

This guide covers all aspects of user management. It provides an overview of Roles (previously "User Roles") and Permissions, as well as the creation, editing, and deletion of Users and Roles. It is intended for the Admin(s) of your organisation.

In the new dashboard, user management lives under Security in the sidebar, which contains Users, Roles, API keys, and Approval rules. (In the old dashboard, Users and User roles were under "Settings".)

Users, Roles, and Permissions

Due to the financial nature of the activities performed in the Dashboard, it is imperative to restrict the ability to perform certain sensitive activities to authorised users only, and to track exactly who is responsible for each action performed. To achieve that, the Dashboard uses the following concepts:

  • Permission: the ability to view or manage (create, edit, delete) certain data, e.g. crypto payments or fiat withdrawals.

  • Role: a list of permissions that provide a certain level of access to the Dashboard and can be assigned to users.

  • User: a member of your organisation who has been assigned an account with a specific Role in the Dashboard.

Predefined Roles

The Dashboard comes with a set of predefined Roles that reflect the most common setups:

  1. Admin — full control over all activities in the Dashboard. Only Admin(s) can manage Users, Roles, and API keys. The default Admin account is created when your organisation is set up, and each Admin can create and manage other Admin accounts.

  2. Manager — all Admin permissions except managing or viewing Users and Roles, and managing API keys.

  3. BackOffice — restricted to viewing and reporting on all movements of your organisation's funds.

  4. Support — restricted to viewing crypto deposits and crypto withdrawals and to managing balance conversion.

Each role shows its permissions per resource with access levels such as Full access, view-only, or No access.

Custom Roles

While the predefined roles fit many organisations, your business needs may require a more fine-tuned approach to permission control. For example, a person responsible for creating payment links and initiating fiat deposit requests, but who shouldn't be able to initiate or approve outgoing payments; or a person with all the responsibilities of the default Manager role apart from banking.

Creating a custom Role

  1. Open Security → Roles in the sidebar. Here you can also see the current list of Roles for your organisation.

  2. Create a new Role and fill in:

    • Label — the name of the custom role, e.g. "Bank settlements".

    • Permissions based on — optionally start from an existing role as a template.

    • Set the access level per resource under Permissions (e.g. "Manage Bank Settlements" to Full access).

  3. Click Review, enter your 2FA code, and confirm. If your 2FA isn't enabled yet, see Two-Factor Authentication.

  4. The role is now visible in Roles and can be assigned to a new or existing user.

Managing a custom Role

At any time, you can edit or delete a custom role from Security → Roles:

  • Delete: first ensure all users assigned to it have been reassigned to a new role or deleted.

  • Change permissions: all users associated with the role get the newly set permissions at their next login.

Managing Users

The Admin can invite additional team members to the Dashboard and assign them appropriate roles.

Creating a new User

  1. Open Security → Users in the sidebar. Here you can also see the current list of active users.

  2. Create a new User and fill in the Email of your colleague and their Role.

  3. Click Review, enter your 2FA code, and confirm.

For security reasons, use an organisational email address, not a personal one.

Once the user account is created, a reset-password email is sent to the provided address. Then:

  1. Inform your colleague that their Dashboard account has been created and needs to be activated.

  2. If needed, share the Activating Your Account guide with your colleague.

  3. Let your colleague know they need to enable their 2FA — they can refer to Two-Factor Authentication.

Managing an existing User

At any time, the Admin can manage all user accounts from Security → Users:

  • Edit the user's role: select the new role (e.g. switch from "Support" to "Manager"), enter your 2FA code, and confirm. The permissions associated with the new role are available at the next login.

  • Delete the user: use the delete action on the user's record.

Approval rules (Security → Approval rules) let your organisation require an authorised colleague to approve crypto withdrawals before they are executed. Ask our team if you want help configuring an approval workflow.