Roles and Permissions
The roles and permissions are detailed below with their respective description, which you can later configure in the console ASMSAdministrator in the session of Roles.
⚐ Note: To view the list of the Super Roles, go to Super Roles.
Roles ASMS
Accounting Manager
It allows the management of project accounting, where the registration and control of the costs and revenues associated with the execution of a project are defined. This role enables access to the Accounting screen, from where the specialist can consult the financial history of a project and manage each of its movements.
| Permission | Description Permit |
|---|---|
| Accounting | It allows access to the Accounting screen of a project, where the financial summary (costs and recorded revenues) associated with its execution is consulted. |
| Costs.GetObject | It allows you to consult the complete detail of a cost or income recorded in the accounting of a project, including its value, date, concept and associated cost center. |
| Costs.Add | It allows you to record a new cost or income in the accounting of a project, associating it with a cost center and a specific concept. |
| Costs.List | It allows you to consult the complete list of costs and revenues recorded in the accounting of a project, with their respective search filters. |
| Costs.Update | It allows you to modify the information of a previously recorded cost or income (value, concept, cost center, among others). |
| Costs.Delete | It allows you to permanently eliminate a cost or income recorded in the accounting of a project. |
Administrator Role
It grants access to the administrator’s console, the central point from where all the modules of the solution (projects, roles, catalogs, forms, integrations, among others) are configured and parameterized. By assigning this role, the user obtains the gateway to the general administration of the tool.
| Permission | Description Permit |
|---|---|
| Administrator_Console | It allows access to the administrator’s console, from where the configurations and modules available in the solution are centrally managed. |
Approval Administrator
It allows the management of approval configurations, where the schemes that determine how, when, and who should authorize an item before continuing its flow are defined. From this role, the type of approver (internal or client), the number or percentage of votes required to approve or reject, the destination states according to the result obtained, and the configuration of reminders to pending voters are defined.
| Permission | Description Permit |
|---|---|
| Approvals | It allows access to the approvals screen, where the approval configurations defined for projects are consulted. |
| Approvals.Add | Allows you to create a new approval configuration, indicating the project, form type, voters, and approval or rejection conditions. |
| Approvals.Update | Allows you to edit an existing approval settings, including voters, voting thresholds, and reminders. |
| Approvals.Delete | Allows you to delete an approval setting. |
| Approvals.List | Allows you to obtain the list of registered approval configurations. |
| Approvals.GetObject | Allows you to get the full detail of a one-time approval setup. |
All Project Viewer
It grants access and visualization over all the projects configured in the solution, regardless of whether the user is explicitly associated with them. In addition, it enables the modification of the information and configurations of any project, which makes it a transversal role, useful for supervision or general administration profiles.
| Permission | Description Permit |
|---|---|
| Asdk-view and modify all projects | It allows you to view and modify the information and configurations of all existing projects in the solution, even those to which the user is not directly associated. |
Area Administrator
It allows the administration of organizational areas, which correspond to the same group entity, parameterized under the area type. From this role, the membership of users and specialists is managed, the area is associated with projects with their specific profile and calendar, and the areas of a project or the group responsible for a service or status are resolved, key information for the routing of work.
| Permission | Description Permit |
|---|---|
| Groups.Add | It allows you to create an organizational area (group), defining its name, description, icon, responsible user and active status. |
| Groups.Update | It allows you to edit the information of an existing organizational area. |
| Groups.Delete | It allows you to eliminate an organizational area. |
| Areas | It allows access to the organizational areas screen, where the list of configured areas is consulted. |
| Groups.ListArea | It allows you to obtain the list of organizational areas associated with a project. |
| Groups.GetObject | It allows you to obtain the complete detail of an organizational area, including its membership and assigned calendar. |
| Groups.AddProject | It allows you to associate an organizational area with a project, defining the profile and schedule that apply to that project. |
| Groups.DeleteProject | It allows you to disassociate an organizational area from a project. |
Banner Administrator
It allows the management of banners, where the ads or messages that are displayed in the solution dashboard are defined. From this role, the text of the banner, the project to which it applies (or if it is global in scope) and its active or inactive status are defined.
| Permission | Description Permit |
|---|---|
| Banners | It allows access to the banner screen, where the list of configured ads is consulted. |
| Banners.Add | It allows you to create a new banner, defining its name, text and the project or scope to which it applies. |
| Banners.Update | Allows you to edit an existing banner. |
| Banners.Delete | Allows you to delete a banner. |
| Banners.GetObject | It allows you to obtain the detail of a specific banner. |
| Banners.List | It allows you to obtain the list of banners, with the option to filter by project. |
Budgets Manager
It allows the management of project budgets, where the registration and control of budgeted items by cost center or income are defined, and their comparison against the values actually executed. This role enables access to the Budgets screen, from where the specialist can consult the annual aggregate view (month-to-month value) and manage each budget movement.
| Permission | Description Permit |
|---|---|
| Budgets | It allows access to the budget screen, where the budgeted value is consulted against the value executed by cost or income center. |
| Costs.GetObject | It allows you to consult the complete detail of a budgeted item, including its current value, its original value and the associated cost or income center. |
| Costs.Add | It allows a new budget item to be registered. |
| Costs.List | It allows you to obtain the list of registered budget items. |
| Costs.Update | Allows you to edit a posted budget item. |
| Costs.Delete | Allows you to eliminate a recorded budget item. |
Business Process Administrator
It allows the management of business processes, where BPMN-type flows are defined that model the automated execution of a process within the solution. From this role, the process model is defined and associated with the services in the catalog and the projects where it must be executed.
| Permission | Description Permit |
|---|---|
| BusinessProcess | It allows access to the business processes screen, where the list of modeled processes is consulted. |
| BusinessProcess.List | It allows you to obtain the list of business processes, filtering by project or by associated service. |
| BusinessProcess.GetObject | It allows you to obtain the detail of a business process, including the definition of its model. |
| BusinessProcess.Add | It allows you to create a new business process and optionally associate it with a project. |
| BusinessProcess.Update | It allows you to edit an existing business process, as well as its association with services and projects. |
| BusinessProcess.Delete | It allows you to eliminate a business process. |
Calendar Administrator
This role allows for the management of calendars, where you define the hours of operation (with their exception days and time slots) that the SLA engine uses to calculate the business time due dates of projects, groups, and users.
| Permission | Description Permit |
|---|---|
| Calendars | It allows access to the calendars screen, where the list of configured schedules is consulted. |
| Calendars.Add | It allows you to create a new calendar, defining its name, time zone, exception days and time slots. |
| Calendars.Update | Allows you to edit an existing calendar, including its time slots. |
| Calendars.Delete | Allows you to delete a calendar. |
| Calendars.List | Allows you to obtain the list of current calendars. |
| Calendars.GetObject | It allows you to obtain the complete detail of a calendar. |
Catalogs Manager
It allows catalog management, where configurable and reusable value lists (flat or hierarchical in tree) are defined that feed additional fields of type list or tree, such as lists of equipment brands, document types or location trees.
| Permission | Description Permit |
|---|---|
| Catalogs | It allows access to the catalog screen, from where catalogs and their values are managed, including the creation of hierarchical values and catalogs dependent on each other. |
ChangeSet Manager
It allows the complete management of the ChangeSets, where the packages of schema or data changes (grouped SQL statements) that are deployed on the customer databases are defined. This role covers the entire cycle of the package: from its visualization and creation, to the closure, import and updating of its operations.
| Permission | Description Permit |
|---|---|
| ChangeSet | It allows you to consult and view the registered ChangeSets, as well as the details of their operations (insertion, update or deletion) on each affected table. |
| ChangeSet.Add | Allows you to create a new ChangeSet. |
| ChangeSet.Close | Allows you to close a ChangeSet, leaving it inactive for future modifications. |
| ChangeSet.Import | It allows you to import a ChangeSet from a file, recording the import run with its date and status. |
| ChangeSet.Update | It allows you to update a ChangeSet, including the individual activation or deactivation of each operation before applying it. |
Chat Administrator
It allows the administration and configuration of the system’s chat module. From this role, you define, by service and category, which template and what type of record (incident or service request) is automatically created when starting a conversation, as well as the level of escalation and the group of specialists that attend the chat in each project.
| Permission | Description Permit |
|---|---|
| Chat Settings | It allows viewing and access to chat settings, including enabling the module per project. |
| Chat.Setup | It allows you to configure and parameterize the chat module, as well as manage which specialists are authorized to attend it. |
Client Additionals Administrator
It has permissions for the management of additional customer fields, where configurable fields (text, date, list, numeric, file, catalog, among other types) are defined that are added to the customer form to capture information particular to the organization. An additional field can depend on another and be segmented by service category.
| Permission | Description Permit |
|---|---|
| Clients.Additionals | It allows access to the screen of additional customer fields, where the list of configured fields is consulted. |
| Additionals.Add | It allows you to create a new additional customer field, defining its data type and dependencies. |
| Additionals.Update | It allows you to edit an additional existing customer field, as well as manage its possible values when it is of list type. |
| Additionals.Delete | Allows you to remove the definition of an additional customer field or its values. |
| Additionals.List | Allows you to obtain the list of additional fields of configured customers. |
| Additionals.GetObject | It allows you to obtain the detail of an additional field of customers, including the history of values registered for a customer. |
Client Groups Administrator
It allows the administration of customer groups, where the same parameterized group entity is defined to group customers, typically used to give collective visibility in the self-service portal (for example, that all users of the same company see the same cases). From this role, the group is associated with a project with its own profile and calendar.
| Permission | Description Permit |
|---|---|
| ClientGroups | It allows access to the customer groups screen, where the list of configured groups is consulted. |
| Groups.Add | It allows you to create a new customer group. |
| Groups.Update | Allows you to edit an existing customer group. |
| Groups.Delete | Allows you to delete a group of customers. |
| Groups.GetObject | It allows you to obtain the details of a group of customers, including their membership. |
| Groups.List | It allows you to obtain the list of customer groups. |
| Groups.AddProject | It allows you to associate a group of customers with a project, defining the profile and the calendar that apply to that project. |
| Groups.DeleteProject | Allows you to disassociate a group of customers from a project. |
Client Interface Administrator
It allows the administration of the client interface, where the configuration by project and by model of the visible label of each field of the client form (technical name vs. translatable text) is defined, as well as its enablement, visibility, obligatoriness and dependence on other fields according to the stage of the flow. It defines how the client data form looks in the portal or in the console.
| Permission | Description Permit |
|---|---|
| Clients.Interface | Allows access to the client interfaces screen, where the appearance and behavior of the client form is configured. |
| Interface.Update | It allows you to edit the client interface, including the label, visibility and enforceability of each field by stage of the flow. |
| Interface.List | It allows you to obtain the list of configured client interfaces. |
| Interface.GetObject | It allows you to get the detail of a client interface. |
Client Mail Template Administrator
It allows the management of customer mail templates, where the messages (subject and body, translatable and HTML-supported) that are sent to customers in response to certain events are defined, such as the built-in self-registration notification template that is sent when a customer registers themselves in the portal.
| Permission | Description Permit |
|---|---|
| Clients.MailTemplates | It allows access to the customer mail templates screen, where the list of configured templates is consulted. |
| MailTemplates.Add | It allows you to create a new customer mail template, specific to a project and model or generic scope. |
| MailTemplates.Update | Allows you to edit an existing customer mail template. |
| MailTemplates.Delete | Allows you to delete a customer mail template. |
| MailTemplates.List | It allows you to obtain the list of customer email templates, filtering by project or model. |
| MailTemplates.GetObject | It allows you to obtain the detail of a customer mail template, including the effective template that will be used if a specific one does not exist. |
Client Manager
The role of customer manager is related to the management of customers in the tool, understanding a customer as any user whose associated type is Client (as opposed to the specialist). From this role, the customer’s information (document, company, contact, address, direct manager, calendar and assigned profile) is managed and its association with the projects in which it participates.
| Permission | Description Permit |
|---|---|
| Clients | It allows access to the customer screen, where the information of the customer type users is consulted and managed. |
| User.AddProject | It allows you to associate a client with a project. |
| User.DeleteProject | It allows you to remove the association of a client to a project. |
| User.Update | Allows you to edit a customer’s information. |
| User.GetObject | It allows you to obtain the detail of a customer. |
| User.Add | It allows you to create a new customer. |
| User.Delete | Allows you to delete a customer. |
| User.ListClient | It allows you to obtain the list of clients, with the possibility of filtering by project, company or group. |
| CreateUser | Allows you to create a client user. |
| GetUser | Allows you to view the information of a client user. |
| ManageUser | It allows you to comprehensively manage the information and settings of a client user. |
Client Role
Broad, predefined, system role, designed for Client users accessing the self-service portal: when you create such a user, the solution automatically assigns this role. It brings together the cross-cutting set of permissions that defines what a customer can see and do in the portal—knowledge base articles, first-party CIs, incidents, changes, service requests, SLAs, vendor, news, case-to-status relationships—a scope different from that of a specialist or internal agent role.
| Permission | Description Permit |
|---|---|
| Clients.Additionals | Allows you to display the additional fields configured for the customer. |
| Additionals.Add | Allows you to record the value of an additional field. |
| Additionals.Update | Allows you to update the value of an additional field. |
| Additionals.Delete | Allows you to remove the value of an additional field. |
| Approvals | Allows you to view the approvals associated with your cases. |
| Approvals.Add | Allows you to record your vote on a pending approval. |
| Approvals.Update | Allows you to update the vote recorded in an approval. |
| Approvals.Delete | Allows you to delete the vote recorded in an approval. |
| Additionals.List | Allows you to obtain the list of additional fields configured. |
| Additionals.GetObject | Allows you to get the detail of an additional field. |
| Approvals.List | It allows you to obtain the list of approvals associated with your cases. |
| Approvals.GetObject | It allows you to obtain the detail of an approval. |
| Add_Change_Note | Allows you to add a note to a change. |
| Add_Closed_Change_Note | Allows you to add a note to a closed change. |
| Add_Closed_Incident_Note | Allows you to add a note to a closed incident. |
| Add_Closed_ServiceCall_Note | Allows you to add a note to a closed service request. |
| Add_Incident_Note | Allows you to add a note to an incident. |
| Add_ServiceCall_Note | Allows you to add a note to a service request. |
| Articles.GetObject | Allows you to consult the detail of an article in the knowledge base. |
| Articles.List | It allows you to obtain the list of knowledge base articles available to the customer. |
| Banners.GetObject | It allows you to consult the detail of a banner displayed on the portal. |
| Banners.List | It allows you to obtain the list of banners visible to the customer. |
| Changes | It allows access to the changes screen and the consultation of changes related to the customer. |
| Cis.GetObject | Allows you to view the detail of a customer’s own configuration item (CI). |
| Cis.List | It allows you to obtain the list of configuration elements (CIs) related to the client. |
| Client_Console | Allows access to the customer’s self-service portal or console. |
| CreateDocument | It allows you to attach documents to your cases. |
| DeleteDocument | Allows you to delete attachments in your cases. |
| GetDocument | Allows you to consult the attached documents in your cases. |
| Groups.GetObject | It allows you to consult the details of the group to which the customer belongs. |
| Incidents | It allows access to the incident screen and the consultation of the incidents reported by the customer. |
| Items.Add | It allows you to create a new item (case) from the portal. |
| Items.GetObject | It allows you to consult the detail of an item (case) of the customer. |
| Items.List | It allows you to obtain the list of items (cases) registered by the client. |
| Items.Update | It allows you to update the information of an item (case) of the customer’s own. |
| News.List | It allows you to obtain the list of news published on the portal. |
| Projects.List | It allows you to obtain the list of projects to which the client is associated. |
| Relations.GetObject | It allows you to consult the details of the relationships between your cases. |
| ServiceCalls | It allows access to the service requests screen and the consultation of those registered by the customer. |
| Services.GetObject | It allows you to consult the details of a service in the catalog available to the customer. |
| Services.List | It allows you to obtain the list of services from the catalog available to the customer. |
| SLAs.GetObject | Allows you to consult the detail of the SLA associated with a customer case. |
| SLAs.List | It allows you to obtain the list of SLAs associated with the customer’s cases. |
| States.GetObject | It allows you to consult the detail of a status within the flow of your cases. |
| User.GetObject | It allows you to consult the details of your own user information. |
| User.Update | Allows you to update your own user information. |
| Vendor.GetObject | It allows you to consult the details of the supplier or company to which it belongs. |
| Vendor.ListCompany | It allows you to obtain the list of supplier companies visible to the customer. |
Client Survey Administrator
It allows the administration of customer satisfaction surveys, where you define the settings that trigger the sending of a survey when it reaches a certain status of a case (for example, when closing an incident), set the status to which it transitions once it is answered, and schedule the reminders, the template and the mail server used in the sending.
| Permission | Description Permit |
|---|---|
| Clients.Surveys | It allows access to the customer surveys screen, where the list of configured surveys is consulted. |
| Surveys.Add | It allows you to create a new customer survey, defining your questions, the status that triggers your sending and the associated email template. |
| Surveys.Update | Allows you to edit an existing customer survey, including its questions and reminders. |
| Surveys.Delete | Allows you to delete a customer survey. |
| Surveys.List | Allows you to obtain the list of configured customer surveys. |
| Surveys.GetObject | It allows you to obtain the detail of a customer survey, including the shipment history and the registered responses. |
Company Additionals Administrator
It allows the management of the additional fields configured for companies, where the complementary information that each organization needs to capture about its customers or suppliers beyond the standard fields of the form is defined. This role enables access to the additional fields of companies, from where the specialist defines the type of data, the length, the obligatory nature and the dependency of each additional field, in addition to the order in which they are presented in the form.
| Permission | Description Permit |
|---|---|
| Companys.Additionals | Allows access to the additional company fields screen, where the list of fields configured for the company form is consulted. |
| Additionals.Add | It allows you to create a new additional field for the companies form, defining its data type, length and obligatory nature. |
| Additionals.Update | Allows you to edit the settings of an existing additional field in the companies form. |
| Additionals.Delete | Allows you to delete an additional field configured for the company form. |
| Additionals.List | It allows you to obtain the list of additional fields configured for the companies. |
| Additionals.GetObject | It allows you to consult the detail of an additional field configured for companies, including its data type, length and dependencies. |
Company Interface Administrator
It allows the administration of the company interface, where the configuration of which fields of the company form are visible, mandatory or editable according to the status of the record is defined. This role enables access to the company interfaces screen, from where the specialist defines, for each state (active, inactive or other), the behavior of each field of the form without the need to modify the development of the application.
| Permission | Description Permit |
|---|---|
| Companys.Interface | It allows access to the company interfaces screen, where the configuration of the form fields is consulted according to the status of the record. |
| Interface.GetObject | It allows you to consult the details of the configuration of a field in the company interface, including its visibility, mandatory nature and maximum length. |
| Interface.List | It allows you to obtain the list of interface configurations defined for the company form. |
| Interface.Update | Allows you to update the settings of a field in the Company Interface, such as visibility, enforceability, or status enablement. |
Company Manager
It allows the configuration and management of the companies registered in the application, corresponding to the organization’s customers and suppliers. This role enables access to the companies screen, from where the specialist manages the information of each company and its association with the projects. In the data model, the company and the supplier correspond to the same type of entity, so the role jointly uses the company visibility permissions and the generic supplier administration permissions.
| Permission | Description Permit |
|---|---|
| Companys | It allows you to view the list of companies registered in the application. |
| Vendor.Add | Allows you to create a new company in the app. |
| Vendor.Update | Allows you to edit the information of a registered company. |
| Vendor.Delete | Allows you to delete a registered company. |
| Vendor.AddProject | It allows you to associate a company with a project. |
| Vendor.DeleteProject | Allows you to remove the association of a company with a project. |
| Vendor.ListCompany | It allows you to obtain the list of companies registered in the application. |
| Vendor.GetObject | It allows you to consult the details of a registered company, including its information and associated projects. |
Contract Additionals Administrator
It allows the administration of the additional fields configured for contracts, where the complementary information of the business (such as policy number, internal responsible or cost center) that is recorded in addition to the standard fields of the contract is defined. This role enables access to the additional fields of contracts screen, from where the specialist defines the type of data, the length, the obligatory nature and the dependency of each field, as well as the order in which they are presented in the form.
| Permission | Description Permit |
|---|---|
| Contract.Additionals | It allows access to the additional contract fields screen, where the list of fields configured for the contract form is consulted. |
| Additionals.Add | It allows you to create a new additional field for the contract form, defining its data type, length and obligatory nature. |
| Additionals.Update | Allows you to edit the settings of an existing additional field in the contract form. |
| Additionals.Delete | Allows you to delete an additional field configured for the contract form. |
| Additionals.List | Allows you to obtain the list of additional fields configured for contracts. |
| Additionals.GetObject | It allows you to consult the detail of an additional field configured for contracts, including its data type, length and dependencies. |
Contract Mail Template Administrator
It allows the management of the mail templates associated with the contracts, reusing the system’s generic messaging template engine (subject, body with HTML support, sender, option to hide header and default or factory default template marks). This role enables access to the contract mail templates screen, from where the specialist configures the notifications that are sent from contract events, such as the notice of upcoming expiration defined by its alarm flag and its days in advance.
| Permission | Description Permit |
|---|---|
| Contracts.MailTemplates | Allows access to the contract mail templates screen, where the list of configured templates is consulted. |
| MailTemplates.Add | It allows you to create a new email template for contracts, defining its subject, body and sender. |
| MailTemplates.Update | Allows you to edit an existing contract mail template. |
| MailTemplates.Delete | Allows you to delete a contract mail template. |
| MailTemplates.List | It allows you to obtain the list of mail templates configured for contracts. |
| MailTemplates.GetObject | Allows you to consult the details of a contract mail template, including its content and configuration. |
Contract Status Administrator
It allows the management of contract statuses, based on the generic entity of statuses that share contracts with cases, configuration items, services, service agreements, and tasks. This role enables access to the contract statuses screen, from where the specialist defines the name, description, and visual representation colors of each status, whether it corresponds to an initial or final state, the stage of the life cycle to which it belongs, and whether it requires a note to be recorded when transitioning to it, thus determining whether the contract is still in force or is already closed.
| Permission | Description Permit |
|---|---|
| Contract.States | It allows access to the contract status screen, where the list of configured statuses for the contract lifecycle is consulted. |
| States.Add | It allows you to create a new status for contracts, defining their name, color, and whether it is a start or end status. |
| States.Update | Allows you to edit the settings of an existing contract status. |
| States.Delete | Allows you to delete a configured state for contracts. |
| States.GetObject | It allows you to consult the detail of a contract status, including its stage of the life cycle and its transition rules. |
| States.List | It allows you to obtain the list of configured statuses for contracts. |
Contracts Manager
It allows the comprehensive management of contracts, broadly understood as financial documents (contracts, invoices or other documents depending on their type) that record number, description, economic value, warranty, start and end date of validity, days of notice notice and expiration alarm flag. This role enables access to the contracts screen, from where the specialist manages their relationship with the partner company, the type and model of the document, the area and the responsible user, the document template, the current status and reason for the last transition, as well as their relationships with configuration elements, services, service agreements, projects and other contracts (for example, a framework contract and its annexes).
| Permission | Description Permit |
|---|---|
| Contracts | It allows access to the contracts screen, where the list of registered contracts is consulted. |
| Contracts.List | It allows you to obtain the list of contracts registered in the application. |
| Contracts.Add | It allows you to create a new contract, recording your financial information, your effective dates, and your relationship with the partner company. |
| Contracts.Update | Allows you to edit the information of a registered contract, including the recalculation of its expiration flag. |
| Contracts.Delete | Allows you to delete a registered contract. |
| Contracts.GetObject | It allows you to consult the details of a contract, including its financial information, validity, status and relationships. |
| CreateDocument | Allows you to attach a document to the contract. |
| DeleteDocument | Allows you to delete a document attached to the contract. |
| GetDocument | Allows you to consult a document attached to the contract. |
| UpdateAccessObject | Allows you to update the access object associated with the contract. |
Contracts Models Administrator
It allows the administration of contract models, where templates are defined that establish what additional fields, statuses and behavior each type of contract has, following the same mechanism used by the Incident, Change and other case types models. This role enables access to the contract models screen, from where the specialist creates and adjusts the models that are then assigned when registering a contract.
| Permission | Description Permit |
|---|---|
| Contract.Models | It allows access to the contract model screen, where the list of configured models is consulted. |
| Models.Add | It allows you to create a new contract model. |
| Models.Update | Allows you to edit the settings of an existing contract template. |
| Models.Delete | Allows you to delete a contract template. |
| Models.GetObject | It allows you to consult the details of a contract model, including its configuration of fields and behavior. |
CostCenters Manager
It allows the management of cost centers, used to allocate and distribute the cost or income generated by projects, contracts, or other items of the system, for the purposes of budget control and internal invoicing. This role enables access to the cost centers screen, from where the specialist manages their name, description, accounting code, and hierarchy (parent cost center), as well as their association with projects and other items with a distribution percentage.
| Permission | Description Permit |
|---|---|
| CostCenters | It allows access to the cost centers screen, where the hierarchical list of configured centers is consulted. |
| CostCenters.List | It allows you to obtain the list of registered cost centers. |
| CostCenters.GetObject | It allows you to consult the detail of a cost center, including its accounting code and its hierarchy. |
| CostCenters.Update | Allows you to edit the information in a posted cost center. |
| CostCenters.Add | It allows you to create a new cost center. |
| CostCenters.Delete | Allows you to delete a posted cost center. |
Display Administrator
It allows you to customize the names of the visual groupings of the console, where the menus and regions of the interface are defined, without altering the functional logic of the application. This role enables access to the list of screens, from where the specialist modifies the display name, the translation key and the order of appearance of each section of the menu according to the screen region to which it belongs.
| Permission | Description Permit |
|---|---|
| Display.List | It allows you to obtain the list of screens and their configurable visual groupings. |
| Display.Update | Allows you to update the display name, translation key, and order of a visual grouping in the console. |
Designer Administrator
It allows visual customization (branding) of the different consoles of the product. This role enables access to the designer editor, from where the specialist identifies the brand and type of console, and configures colors, fonts, images, the login and console carousel, texts, the style file and the HTML preview, differentiating the predefined configurations from those created by the client.
| Permission | Description Permit |
|---|---|
| Designer | It allows the visualization of the list of design configurations (branding) of the consoles. |
| Designer.Add | Allows you to create a new layout configuration for a console. |
| Designer.Delete | Allows you to delete an existing layout configuration. |
| Designer.Update | Allows you to update the colors, fonts, images, and other visual elements of a design configuration. |
EventLog Manager
It allows the consultation of the system’s audit log, reusing the generic auditing engine. This role enables access to the EventLogs screen, from where the specialist filters the events by application or module where they occurred, user who executed the action, permission executed and date range, thus documenting which user performed what action, in which application and when, as a security audit trail and traceability of administrative operations.
| Permission | Description Permit |
|---|---|
| EventLogs | It allows the visualization and consultation of the audit log (EventLogs), filtering by application, user, permission executed and date range. |
Forms Change Administrator
The case capture form is dynamically assembled from a model, which groups and parameterizes its characteristics: additional fields, interfaces by status, statuses and transitions, approval processes, tasks, and access profiles. This role specifically manages the design of the Change capture form: it organizes the fields into sections (name, description, order, and field list) and defines their visual layout, so that the form seen by the end user is generated and validated dynamically according to those configurations, without the need to program a separate screen.
| Permission | Description Permit |
|---|---|
| Change.Forms | Allows access to the Changes forms screen, where the fields that make up the capture form are organized into sections. |
| Forms.Add | Allows the addition of forms. |
| Forms.Delete | Allows for the deletion of forms. |
| Forms.GetObject | Allows you to get objects from forms. |
| Forms.List | Allows the list of forms. |
| Forms.Update | Allows the updating of forms. |
Forms Incident Administrator
The case capture form is dynamically assembled from a model, which groups and parameterizes its characteristics: additional fields, interfaces by status, statuses and transitions, approval processes, tasks and access profiles. This role specifically manages the design of the Incident capture form: it organizes the fields into sections (name, description, order and list of fields) and defines their visual layout, so that the form seen by the end user is generated and validated dynamically according to those configurations, without the need to program a different screen.
| Permission | Description Permit |
|---|---|
| Forms.Add | Allows form creation; access is limited to forms of the case type that the role manages. |
| Forms.Delete | Allows for the deletion of forms; access is limited to forms of the case type that the role manages. |
| Forms.GetObject | Allows you to view the detail of a form; access is limited to forms of the case type managed by the role. |
| Forms.List | Allows you to obtain the list of forms; access is limited to the forms of the type of case that the role manages. |
| Forms.Update | Allows form updating; access is limited to forms of the case type that the role manages. |
| Incident.Forms | It allows access to the Incident forms screen, where the fields that make up the capture form are organized into sections. |
Forms Problem Administrator
The case capture form is dynamically assembled from a model, which groups and parameterizes its characteristics: additional fields, interfaces by status, statuses and transitions, approval processes, tasks, and access profiles. This role specifically manages the design of the Problem capture form: it organizes the fields into sections (name, description, order, and field list) and defines their visual layout, so that the form that the end user sees is generated and validated dynamically according to those settings, without the need to program a separate screen.
| Permission | Description Permit |
|---|---|
| Forms.Add | Allows form creation; access is limited to forms of the case type that the role manages. |
| Forms.Delete | Allows for the deletion of forms; access is limited to forms of the case type that the role manages. |
| Forms.GetObject | Allows you to view the detail of a form; access is limited to forms of the case type managed by the role. |
| Forms.List | Allows you to obtain the list of forms; access is limited to the forms of the type of case that the role manages. |
| Forms.Update | Allows form updating; access is limited to forms of the case type that the role manages. |
| Problem.Forms | Allows access to the Problems forms screen, where the fields that make up the capture form are organized into sections. |
Forms Release Administrator
A case capture form is dynamically assembled from a model, which groups and parameterizes its characteristics: additional fields, interfaces by status, statuses and transitions, approval processes, tasks, and access profiles. This role specifically manages the design of the Release capture form: it organizes the fields into sections (name, description, order, and field list) and defines their visual layout, so that the form that the end user sees is dynamically generated and validated according to those settings, without the need to program a separate screen.
| Permission | Description Permit |
|---|---|
| Release.Forms | Allows access to the Release forms screen, where the fields that make up the capture form are organized into sections. |
| Forms.Add | Allows form creation; access is limited to forms of the case type that the role manages. |
| Forms.Delete | Allows for the deletion of forms; access is limited to forms of the case type that the role manages. |
| Forms.GetObject | Allows you to view the detail of a form; access is limited to forms of the case type managed by the role. |
| Forms.List | Allows you to obtain the list of forms; access is limited to the forms of the type of case that the role manages. |
| Forms.Update | Allows form updating; access is limited to forms of the case type that the role manages. |
Forms ServiceCall Administrator
The case capture form is dynamically assembled from a model, which groups and parameterizes its characteristics: additional fields, interfaces by status, statuses and transitions, approval processes, tasks, and access profiles. This role specifically manages the design of the service call capture form (Service Request): it organizes the fields into sections (name, description, order, and field list) and defines their visual layout, so that the form seen by the end user is generated and validated dynamically according to those configurations, without the need to program a separate screen.
| Permission | Description Permit |
|---|---|
| Forms.Add | Allows form creation; access is limited to forms of the case type that the role manages. |
| Forms.Delete | Allows for the deletion of forms; access is limited to forms of the case type that the role manages. |
| Forms.GetObject | Allows you to view the detail of a form; access is limited to forms of the case type managed by the role. |
| Forms.List | Allows you to obtain the list of forms; access is limited to the forms of the type of case that the role manages. |
| Forms.Update | Allows form updating; access is limited to forms of the case type that the role manages. |
| ServiceCall.Forms | Allows access to the service call forms screen, where the fields that make up the capture form are organized into sections. |
Forms Task Administrator
A case capture form is dynamically assembled from a model, which groups and parameterizes its characteristics: additional fields, interfaces by status, statuses and transitions, approval processes, tasks, and access profiles. This role specifically manages the design of the Task capture form: it organizes the fields into sections (name, description, order, and field list) and defines their visual layout, so that the form seen by the end user is generated and validated dynamically according to those configurations, without the need to program a separate screen.
| Permission | Description Permit |
|---|---|
| Task.Forms | Allows access to the Tasks forms screen, where the fields that make up the capture form are organized into sections. |
| Forms.Add | Allows form creation; access is limited to forms of the case type that the role manages. |
| Forms.Delete | Allows for the deletion of forms; access is limited to forms of the case type that the role manages. |
| Forms.GetObject | Allows you to view the detail of a form; access is limited to forms of the case type managed by the role. |
| Forms.List | Allows you to obtain the list of forms; access is limited to the forms of the type of case that the role manages. |
| Forms.Update | Allows form updating; access is limited to forms of the case type that the role manages. |
Group Administrator
It allows the administration of groups that group users (specialists or clients) for work assignment and access control. This role enables access to the groups screen, from where the specialist manages their name, description, status, manager or supervisor, the cost and income associated with their members, as well as their association with projects, including the access profile that the group has in each one.
| Permission | Description Permit |
|---|---|
| Groups | It allows access to the groups screen, where the list of registered groups is consulted. |
| Groups.Add | It allows you to create a new group, defining its name, description, manager and type (specialists, customers or supervisor). |
| Groups.Update | Allows you to edit the information of a registered group. |
| Groups.Delete | Allows you to delete a registered group. |
| Groups.GetObject | It allows you to consult the details of a group, including its users and associated projects. |
| Groups.ListArea | It allows you to obtain the list of organizational areas associated with a project. |
| Groups.AddProject | It allows you to associate a group with a project, defining its access profile in that project. |
| Groups.DeleteProject | Allows you to remove the association of a group with a project. |
IA Manager
It allows you to configure, manage, and adjust different aspects of your AI deployment in the console.
| Permission | Description Permit |
|---|---|
| SetupIA | It allows you to configure AI (Artificial Intelligence). |
| SetupIA.AddConnectionPoint | Allows you to add endpoint in AI settings. |
| SetupIA.DeleteConnectionPoint | Allows you to delete endpoint in AI settings. |
| SetupIA.UpdateConnectionPoint | Allows endpoint update in AI settings. |
| SetupIA.UpdateTask | Allows you to update task in AI settings. |
Invoices Manager
It allows the management of invoices, a type of financial document (along with Contracts and Other Documents) that shares the same screen and management engine of “Financial Documents” of the Finance module, differing only by its type. From this role, access to the list of invoices, their life cycle (creation, editing and deletion) and the management of the supporting documents attached to each one are controlled.
| Permission | Description Permit |
|---|---|
| Invoices | It allows access to the Invoices screen and the visualization of its list, within the Finance menu. |
| Contracts.List | Allows you to consult the list of registered invoices (the catalog shares the generic permissions of financial documents). |
| Contracts.Add | It allows you to create a new invoice, associating it with a project and, optionally, with a supplier and related CIs. |
| Contracts.Update | Allows you to edit the information of an invoice that has already been posted. |
| Contracts.Delete | Allows you to delete an invoice from the system. |
| Contracts.GetObject | It allows you to consult the complete detail of an invoice. |
| CreateDocument | Allows you to attach a supporting document to an invoice. |
| DeleteDocument | Allows you to remove an attachment from an invoice. |
| GetDocument | Allows you to download or consult a document attached to an invoice. |
| UpdateAccessObject | Allows you to modify the access list (record-level security) of the invoice. |
Licence Administrator
It allows the administration of product licenses: the assignment of named and concurrent licenses to the different functional modules of ASMS (Incidents, Problems, Changes, Requests, Service Requests, Releases, Events, among others). From this role, you access the Licenses screen of the general configuration menu and control how many licenses of each type are available and how they are distributed.
| Permission | Description Permit |
|---|---|
| Licences | Allows access to the Licenses screen and viewing the assignment status. |
| Licences.Delete | Allows you to delete a license assignment. |
| Licences.Add | Allows you to assign a new license (named or concurrent) to a module. |
| Licences.Update | Allows you to modify an existing license assignment. |
| Licences.List | It allows you to consult the list of licenses assigned by module. |
| Licences.GetObject | Allows you to consult the details of an assigned license. |
Links Administrator
It allows the management of links (configurable shortcuts per project), identified in the menu as “Other Links”. Each link is defined with a name and a URL, and is available to the users of the corresponding project as a direct access to an external or internal site.
| Permission | Description Permit |
|---|---|
| Links.Add | It allows you to create a new link, defining its name and destination URL. |
| Links.Delete | Allows you to delete an existing link. |
| Links.GetObject | It allows you to consult the detail of a link. |
| Links.List | Allows you to consult the list of configured links. |
| Links.Update | Allows you to edit the name or URL of an existing link. |
Locations Administrator
It allows you to view, add, delete and update the physical locations registered in the console, a master catalog reused transversally by other modules: it is associated with users and specialists, with CIs in CMDB, and is used as a calculation criterion for SLA by location.
| Permission | Description Permit |
|---|---|
| Locations | It allows access to the locations module and the visualization of its list. |
| Locations.Add | Allows you to create a new physical location in the catalog. |
| Locations.Delete | Allows you to delete a location from the catalog. |
| Locations.Update | Allows you to edit the information of an existing location. |
Mail Server Administrator
It allows the administration of outgoing mail servers (SMTP), identified in the menu as “Outgoing Servers”, used by the system to send automatic notifications (includes support for Google Mail server detection).
| Permission | Description Permit |
|---|---|
| MailServers | It allows access to the Outgoing Servers screen and the visualization of its list. |
| MailServers.Add | Allows you to register a new outgoing mail server. |
| MailServers.Update | Allows you to edit the settings of an existing mail server. |
| MailServers.Delete | Allows you to delete a registered mail server. |
| MailServers.List | Allows you to consult the list of configured mail servers. |
| MailServers.GetObject | It allows you to consult the details of a mail server. |
Map Administrator
It allows the management and configuration of maps within the console: the definition of map providers (Google/Bing, including its API keys) by country, and the configuration of geofences (Geofences) used for the geolocation of CIs and mobile locations. Both screens – Map Settings and Geofences – share the same access permission.
| Permission | Description Permit |
|---|---|
| Map Settings | Allows access to the Map and Geofence Settings screens. |
| Map.Add | Allows you to add a new map provider or a new geofence. |
| Map.Delete | Allows you to delete a map provider or configured geofence. |
| Map.Update | Allows you to update the settings of a map provider (for example, your API key) or a geofence. |
Matrix Administrator
It allows the management of the priority matrix (Impact × Urgency → Priority), configurable by project and by case type, used by the system to automatically calculate the priority of a case based on the selected impact and urgency.
| Permission | Description Permit |
|---|---|
| Matrix | Allows you to view the priority matrix settings. |
| Matrix.Update | It allows you to modify the combination of impact and urgency that determines the resulting priority. |
Model Administrator
It allows the administration of Models, the base configuration that groups additional fields, approvals, statuses, tasks and mail templates associated with a record type. The same screen is reused in different modules depending on the context (Case Models in Service Desk, Contract Type in Finance, Types in Knowledge Base, Categories in CMDB); this role corresponds to the generic permission set without distinction of module.
| Permission | Description Permit |
|---|---|
| Models | Allows you to view the list of configured models. |
| Models.Add | It allows you to create a new model. |
| Models.Update | Allows you to edit the configuration of an existing model. |
| Models.Delete | Allows you to delete a model. |
| Models.List | Allows you to get the list of models. |
| Models.GetObject | It allows you to consult the detail of a model, including its fields, approvals and associated statuses. |
News Administrator
It allows the management of news published on the portal, including its title, subtitle, publication date and presentation mode (gallery, selector or thumbnails).
| Permission | Description Permit |
|---|---|
| News | It allows you to view the list of published news. |
| News.Add | Allows you to create a new news story. |
| News.Update | Allows you to edit the content of an existing news item. |
| News.Delete | Allows you to delete a news item. |
| News.List | It allows you to obtain the list of news. |
| News.GetObject | It allows you to consult the detail of a news item. |
OtherDocuments Manager
It allows the management of Other Documents, a type of financial document (along with Invoices and Contracts) that shares the same screen and administration engine of the Finance module, differing only by its type. From this role, access to the list, its life cycle and the management of the attached supporting documents are controlled.
| Permission | Description Permit |
|---|---|
| OtherDocuments | It allows access to the Other Documents screen and the visualization of its list. |
| Contracts.List | It allows you to consult the list of other registered documents (the catalog shares the generic permissions of financial documents). |
| Contracts.Add | Allows you to create a new record from another document. |
| Contracts.Update | Allows you to edit the information of an existing record. |
| Contracts.Delete | Allows you to delete a record from another document. |
| Contracts.GetObject | Allows you to consult the detail of a record. |
| CreateDocument | Allows you to attach a supporting document to the record. |
| DeleteDocument | Allows you to delete an attachment. |
| GetDocument | Allows you to download or consult an attached document. |
| UpdateAccessObject | Allows you to modify the access list (record-level security) of the document. |
Project Manager
This role allows you to manage projects, the root container for the configuration of a module instance (for example, a service desk), on which its branding, its default email account, its external authentication, and the models, rules, relationships and catalogs that are filtered or consulted “by project” depend.
| Permission | Description Permit |
|---|---|
| Projects | Allows you to view the list of configured projects. |
| Projects.Add | Allows you to create a new project. |
| Projects.Update | Allows you to edit the settings of an existing project. |
| Projects.Delete | Allows you to delete a project. |
| Projects.List | Allows you to get the list of projects. |
| Projects.GetObject | Allows you to consult the detail of a project. |
Provider Manager
This role handles everything related to Vendor management, a subtype of Company managed from the Vendors screen within the Company settings, including its link to projects for billing, assets, and contracts.
| Permission | Description Permit |
|---|---|
| Suppliers | It allows access to the Suppliers screen and the display of its list. |
| Vendor.Add | It allows you to register a new supplier. |
| Vendor.Update | Allows you to edit the information of an existing supplier. |
| Vendor.Delete | Allows you to delete a vendor. |
| Vendor.AddProject | It allows you to associate a supplier with a project. |
| Vendor.DeleteProject | Allows you to disassociate a vendor from a project. |
| Vendor.GetObject | It allows you to consult the details of a supplier. |
| Vendor.ListProvider | Allows you to obtain the list of supplier companies. |
Recalculate dates
It allows the recalculation of the times of a case based on its history (for example, after a change of calendar or shift), differentiating whether the case is open or already closed. It does not correspond to an administration screen, but to a functional action available on the cases.
| Permission | Description Permit |
|---|---|
| Recalculate_dates | It allows you to recalculate the time history of an open case. |
| Recalculate_dates_closed | It allows you to recalculate the time history of a closed case. |
Relation Administrator
It allows the management of the relationship types between system objects (for example, “Duplicate of” or “Related to”), used to link cases, articles, CIs and events to each other. The same screen is reused in different modules (Service Desk, Service Catalog, Knowledge Base, CMDB, Events); this role corresponds to the generic permission set without distinction of module.
| Permission | Description Permit |
|---|---|
| Relations | Allows you to display the list of configured relationship types. |
| Relations.Add | It allows you to create a new type of relationship. |
| Relations.Update | Allows you to edit an existing relationship type. |
| Relations.Delete | Allows you to delete a relationship type. |
| Relations.List | Allows you to get the list of relationship types. |
| Relations.GetObject | Allows you to consult the details of a type of relationship. |
Risk Administrator
Enables management of risk settings at the general level: the risk questionnaires (questions and answers) that are typically applied in CI maintenance and change management. Distinct from visibility permissions by model type (e.g. CI.Risks or Change.Risks), which only control whether that setting is displayed within a specific module.
| Permission | Description Permit |
|---|---|
| Risks | It allows you to view the list of configured risk questionnaires. |
| Risks.Add | Allows you to create a new risk questionnaire. |
| Risks.Update | Allows you to edit an existing risk questionnaire. |
| Risks.Delete | Allows you to delete a risk questionnaire. |
| Risks.List | It allows you to obtain the list of risk questionnaires. |
| Risks.GetObject | It allows you to consult the details of a risk questionnaire. |
Routing Manager
It allows the management of routings, identified in the menu as “Reassignments”: the engine of rules for the assignment and automatic reassignment of cases to groups or specialists, combining users, catalogs and configured shifts.
| Permission | Description Permit |
|---|---|
| Routings | Allows access to the Reassignments screen and viewing of configured rules. |
| Routings.List | Allows you to get the list of routing rules. |
| Routings.GetObject | Allows you to view the detail of a routing rule. |
| Routings.Update | Allows you to edit an existing routing rule. |
| Routings.Add | Allows you to create a new routing rule. |
| Routings.Delete | Allows you to delete a routing rule. |
Rule Administrator
It allows the management of rules at the general level: the automation engine that evaluates conditions and executes actions (including sending surveys) on system objects. The same screen is reused in different modules (Service Desk, Service Catalog, Knowledge Base, CMDB, Events); this role corresponds to the generic set of permissions without distinction of module, while visibility by model type is controlled with specific permissions such as CI.Rules or Incident.Rules.
| Permission | Description Permit |
|---|---|
| Rules | Allows you to view the list of configured rules. |
| Rules.Add | It allows you to create a new rule, defining its conditions and actions. |
| Rules.Update | Allows you to edit an existing rule. |
| Rules.Delete | Allows you to delete a rule. |
| Rules.List | Allows you to obtain the list of rules. |
| Rules.GetObject | Allows you to consult the detail of a rule. |
Scheduled Notifications Administrator
Allows the management and configuration of scheduled notifications within the system, available in the Service Catalog menu: allows scheduling the periodic sending of notifications associated with services and catalog categories.
| Permission | Description Permit |
|---|---|
| Scheduled_notifications | Allows access to the Notification Program screen and the display of scheduled notifications. |
| Scheduled_notifications. Add | It allows you to create a new scheduled notification, associating it with a service or category. |
| Scheduled_notifications. Delete | Allows you to delete a scheduled notification. |
| Scheduled_notifications. Update | Allows you to edit an existing scheduled notification. |
Service Profile Administrator
It allows the administration and management of service profiles, available in different modules (Service Desk, Service Catalog, Knowledge Base, CMDB): dynamic profiles that define which group or specialist attends to a case according to conditions (company, location, category, among others), and can also chain an approval flow.
| Permission | Description Permit |
|---|---|
| Model_Profile | Allows access to the service profiles screen and viewing of configured profiles. |
| Profile.Add | It allows you to create a new service profile, defining its application conditions. |
| Profile.Delete | Allows you to delete a service profile. |
| Profile.Update | Allows you to edit an existing service profile. |
Settings Manager
This is the broadest permissions role in the console: it groups the update of global system configuration parameters, mobile messaging management (MDMA), and the set of generic permissions that enable access to each of the ASMS administrative screens (companies, groups, users, roles, templates, reports, dashboards, among others), where each screen validates its own page permission (Create/Get/Update/Delete/Manage + name of the entity).
⚐ Note: The prefixed permissions block
AMDM-corresponds to the administration of mobile devices (Aranda Mobile Device Management): application configuration, device enrollment, policies for Android, iOS and Windows, zones, templates and alerts related to enterprise mobile management.
| Permission | Description Permit |
|---|---|
| Settings Update | Allows you to modify the global configuration parameters of the system, available on the Settings screen. |
| AddInFolder | Allows you to add items within a console-managed file system folder. |
| AMDM-Alerts | Allows access to Mobile Device Management (AMDM) alert management. |
| AMDM-ApplicationSettings | Provides access to the general settings of the Mobile Device Management (AMDM) application. |
| AMDM-ApplicationSettings-ActivityLog | Allows you to view the system activity log. |
| AMDM-ApplicationSettings-ApplicationCategories | Allows you to manage application categories. |
| AMDM-ApplicationSettings-ApplicationCategories-Create | Allows you to create categories of applications. |
| AMDM-ApplicationSettings-ApplicationCategories-Delete | Allows you to delete categories of applications. |
| AMDM-ApplicationSettings-ApplicationCategories-Update | Allows you to update categories of applications. |
| AMDM-ApplicationSettings-Calendars | Allows you to manage system calendars. |
| AMDM-ApplicationSettings-Calendars-Apply | Allows you to apply calendar settings. |
| AMDM-ApplicationSettings-Calendars-ViewDevices | Allows you to view devices associated with calendars. |
| AMDM-ApplicationSettings-DynamicGroups | Allows you to manage dynamic groups. |
| AMDM-ApplicationSettings-EnterpriseIntegration | It allows you to manage business integrations. |
| AMDM-ApplicationSettings-EnterpriseIntegration-CMDB | Allows you to configure integration with CMDB. |
| AMDM-ApplicationSettings-EnterpriseIntegration-EMAIL | Allows you to set up email integration. |
| AMDM-ApplicationSettings-EnterpriseIntegration-LDAP | Allows you to configure integration with LDAP. |
| AMDM-ApplicationSettings-GlobalConfigurations | Allows access to global system settings. |
| AMDM-ApplicationSettings-GlobalConfigurations-UpdateConfiguration | Allows you to update global settings. |
| AMDM-ApplicationSettings-GroupPolicy | Allows you to manage group policies. |
| AMDM-ApplicationSettings-Groups | Allows you to manage system groups. |
| AMDM-ApplicationSettings-Licensing | Allows you to manage system licenses. |
| AMDM-ApplicationSettings-Mobile-AgentProfile | Allows you to manage mobile agent profiles. |
| AMDM-ApplicationSettings-Mobile-AgentProfile-Create | Allows you to create mobile agent profiles. |
| AMDM-ApplicationSettings-Mobile-AgentProfile-Delete | Allows you to delete mobile agent profiles. |
| AMDM-ApplicationSettings-Mobile-AgentProfile-Update | Allows you to update mobile agent profiles. |
| AMDM-ApplicationSettings-Mobile-Android | It allows you to manage Android settings. |
| AMDM-ApplicationSettings-Mobile-Android-DisableAndroidForWork | Allows you to disable Android for Work. |
| AMDM-ApplicationSettings-Mobile-Android-DisableAndroidManagementApi | Allows you to disable the Android Management API. |
| AMDM-ApplicationSettings-Mobile-Android-EnableAndroidForWork | Enables Android for Work. |
| AMDM-ApplicationSettings-Mobile-Android-EnableAndroidManagementApi | Enables the Android Management API. |
| AMDM-ApplicationSettings-Mobile-Enrollment | Allows you to manage mobile enrollment. |
| AMDM-ApplicationSettings-Mobile-Enrollment-UpdateConfiguration | Allows you to update the enrollment settings. |
| AMDM-ApplicationSettings-Mobile-iOS | It allows you to manage iOS settings. |
| AMDM-ApplicationSettings-Mobile-iOS-UpdateApnsCertificate | Allows you to update the APNS certificate. |
| AMDM-ApplicationSettings-Mobile-iOS-UpdateAppleBusinessManagerEnrolling | Allows you to update Apple Business Manager settings. |
| AMDM-ApplicationSettings-Mobile-iOS-UpdatePfxCertificate | Allows you to update PFX certificates. |
| AMDM-ApplicationSettings-Mobile-iOS-UpdateVolumePurchaseProgramToken | Allows you to update VPP token. |
| AMDM-ApplicationSettings-Mobile-Ping | Allows you to set up mobile connectivity tests. |
| AMDM-ApplicationSettings-Mobile-Ping-UpdateConfiguration | Allows you to update your Ping settings. |
| AMDM-ApplicationSettings-Mobile-RemoteSupport | Allows you to manage mobile remote support. |
| AMDM-ApplicationSettings-Mobile-Windows | Allows you to manage Windows mobile settings. |
| AMDM-ApplicationSettings-ScriptCommands | It allows you to manage scripted commands. |
| AMDM-ApplicationSettings-StatusDevice | It allows you to visualize the status of the devices. |
| AMDM-ApplicationSettings-Templates | Allows you to manage system templates. |
| AMDM-ApplicationSettings-Templates-UpdateAppTemplate | Allows you to update application templates. |
| AMDM-ApplicationSettings-Templates-UpdateEnrollTemplate | Allows you to update enrollment templates. |
| AMDM-ApplicationSettings-Templates-UpdateRecoveryTemplate | Allows you to update recovery templates. |
| AMDM-ApplicationSettings-Templates-UpdateTermsTemplate | Allows you to update terms and conditions templates. |
| AMDM-ApplicationSettings-Templates-UpdateWelcomeTemplate | Allows you to update welcome templates. |
| AMDM-ApplicationSettings-Users | Allows you to manage system users. |
| AMDM-ApplicationSettings-Zones | Allows you to manage zones. |
| AMDM-ApplicationSettings-Zones-Create | Allows you to create zones. |
| AMDM-ApplicationSettings-Zones-Delete | Allows you to eliminate areas. |
| AMDM-ApplicationSettings-Zones-Update | Allows you to update zones. |
| AMDM-Dashboard | Allows access to the system dashboard. |
| AMDM-Devices-DisableEnterpriseFactoryResetProtection | Allows you to disable factory reset protection. |
| AMDM-Devices-EnableEnterpriseFactoryResetProtection | Enables factory reset protection. |
| AMDM-PersonalSettings | Allows you to manage personal settings. |
| AMDM-PersonalSettings-ProfileEdit | Allows you to edit your personal profile. |
| AMDM-Reports | It allows access to system reports. |
| CreateAlert | Allows you to create alerts. |
| CreateAuthorization | Allows you to create authorizations. |
| CreateAuthProvider | Allows you to create authentication providers. |
| CreateCategory | Allows you to create categories. |
| CreateComment | Allows you to create comments. |
| CreateCompany | It allows you to create companies. |
| CreateConfigurationLDAP | Allows you to create LDAP configurations. |
| CreateDashboard | It allows you to create dashboards. |
| CreateDocument | It allows you to create documents. |
| CreateFields | Allows you to create custom fields. |
| CreateFolder | Allows you to create folders. |
| CreateGroup | Allows you to create groups. |
| CreateLocation | Allows you to create locations. |
| CreateMailAccount | Allows you to create email accounts. |
| CreateMailTemplate | Allows you to create email templates. |
| CreateProject | It allows you to create projects. |
| CreateReport | Allows you to create reports. |
| CreateRole | It allows you to create roles. |
| CreateRule | Allows you to create rules. |
| CreateTemplate | It allows you to create templates. |
| CreateUser | Allows you to create users. |
| DeleteAlert | Allows you to delete alerts. |
| DeleteAuthorization | Allows you to delete authorizations. |
| DeleteAuthProvider | Allows you to remove authentication providers. |
| DeleteCategory | Allows you to delete categories. |
| DeleteComment | Allows you to delete comments. |
| DeleteCompany | Allows you to delete companies. |
| DeleteConfigurationLDAP | Allows LDAP configurations to be deleted. |
| DeleteDashboard | Allows you to delete dashboards. |
| DeleteDocument | Allows you to delete documents. |
| DeleteFields | Allows you to delete fields. |
| DeleteFolder | Allows you to delete folders. |
| DeleteGroup | Allows you to delete groups. |
| DeleteLocation | Allows you to delete locations. |
| DeleteMailAccount | Allows you to delete email accounts. |
| DeleteMailTemplate | Allows you to delete email templates. |
| DeleteProject | Allows you to delete projects. |
| DeleteReport | Allows you to delete reports. |
| DeleteRole | Allows you to delete roles. |
| DeleteRule | Allows you to delete rules. |
| DeleteTemplate | Allows you to delete templates. |
| DeleteUser | Allows users to be deleted. |
| GetAlert | It allows you to obtain the details of alerts. |
| GetAuthorization | It allows you to obtain the details of authorizations. |
| GetAuthProvider | It allows you to obtain the details of authentication providers. |
| GetCategory | It allows you to obtain the detail of categories. |
| GetCompany | It allows you to obtain the details of companies. |
| GetConfigurationLDAP | Allows you to obtain the detail of LDAP configurations. |
| GetDashboard | It allows you to obtain the detail of dashboards. |
| GetDocument | It allows you to obtain the detail of documents. |
| GetFields | Allows you to obtain the detail of fields. |
| GetFolder | Allows you to obtain the detail of folders. |
| GetGroup | It allows you to obtain the detail of groups. |
| GetLocation | It allows you to obtain the detail of locations. |
| GetMailAccount | It allows you to obtain the details of email accounts. |
| GetMailTemplate | It allows you to obtain the detail of email templates. |
| GetProject | It allows you to obtain the detail of projects. |
| GetReport | It allows you to obtain the detail of reports. |
| GetRole | It allows you to obtain the detail of roles. |
| GetRule | Allows you to obtain the detail of rules. |
| GetTemplate | It allows you to obtain the detail of templates. |
| GetUser | It allows you to obtain the details of users. |
| ManageAlert | Allows you to manage alerts. |
| ManageAuthorization | Allows you to manage authorizations. |
| ManageAuthProvider | Allows you to manage authentication providers. |
| ManageCategory | Allows you to manage categories. |
| ManageComment | Allows you to manage comments. |
| ManageCompany | It allows you to manage companies. |
| ManageConfigurationLDAP | Allows LDAP configurations to be managed. |
| ManageDashboard | It allows you to manage dashboards. |
| ManageDocument | Allows you to manage documents. |
| ManageFields | Allows you to manage fields. |
| ManageFolder | Allows you to manage folders. |
| ManageGroup | Allows you to manage groups. |
| ManageLocation | Allows you to manage locations. |
| ManageMail | Allows you to manage mailings. |
| ManageMailAccount | Allows you to manage email accounts. |
| ManageMailTemplate | Allows you to manage mail templates. |
| ManageProject | It allows you to manage projects. |
| ManageReport | It allows you to manage reports. |
| ManageRole | Allows you to manage roles. |
| ManageRule | Allows you to manage rules. |
| ManageTemplate | Allows you to manage templates. |
| ManageUser | Allows you to manage users. |
| ScheduleReport | It allows you to schedule the execution of reports. |
| SendMail | Allows you to send emails. |
| Settings | Allows access to system settings. |
| UpdateAccessObject | Allows you to update access objects. |
| UpdateAlert | Allows you to update alerts. |
| UpdateAuthProvider | Allows you to update authentication providers. |
| UpdateCategory | Allows you to update categories. |
| UpdateCompany | Allows companies to be updated. |
| UpdateConfigurationLDAP | Allows LDAP configurations to be updated. |
| UpdateDashboard | It allows you to update dashboards. |
| UpdateDocument | Allows you to update documents. |
| UpdateFields | Allows you to update fields. |
| UpdateFolder | Allows you to update folders. |
| UpdateGroup | Allows you to update groups. |
| UpdateLocation | Allows you to update locations. |
| UpdateMailAccount | Allows you to update email accounts. |
| UpdateMailTemplate | Allows you to update email templates. |
| UpdateProject | Allows you to update projects. |
| UpdateReport | Allows you to update reports. |
| UpdateRole | Allows you to update roles. |
| UpdateRule | Allows you to update rules. |
| UpdateTemplate | Allows you to update templates. |
| UpdateUser | Allows you to update users. |
Specialist Additionals Administrator
It allows the management of additional specialist fields, where custom attributes are defined that complement the base information of a specialist (technical user or support agent) according to the particular needs of the organization. This role enables access to the configuration screen of additional specialist fields, from where the structure of these fields is defined and their lifecycle is managed.
| Permission | Description Permit |
|---|---|
| Specialists.Additionals | Allows access to the additional specialist fields screen, where the custom attributes available for the specialist profile are configured. |
| Additionals.Add | It allows you to create a new additional field for specialists, defining their name, data type and other configuration properties. |
| Additionals.Update | Allows you to edit the settings of an additional specialist field already created, including its name, data type, or other properties. |
| Additionals.Delete | It allows you to remove an additional field of specialists from the system configuration. |
| Additionals.List | Allows you to consult the complete list of additional fields configured for specialists. |
| Additionals.GetObject | It allows you to consult the details of an additional field specific to specialists, including their configuration and properties. |
Specialist Interface Administrator
It allows the administration of the specialist integration interfaces, where the configurations that allow the synchronization or automatic import of the information of specialists from external systems to the tool are defined, mapping the source fields with the attributes of the ASMS specialist. This role enables access to the screen of specialist interfaces, from where the configuration of these integrations is consulted and edited.
| Permission | Description Permit |
|---|---|
| Specialists.Interface | Allows access to the Specialist Interfaces screen, where the integration settings used to synchronize your information with external systems are managed. |
| Interface.Update | Allows you to edit the settings of a specialist interface, including field mapping and synchronization rules. |
| Interface.List | Allows you to consult the list of integration interfaces configured for specialists. |
| Interface.GetObject | It allows you to consult the details of a specialist interface, including its configuration and status. |
Specialist Mail Template Administrator
It allows the administration of the email templates associated with specialists, where the predefined notification models that the system uses to communicate by email with specialists in the event of relevant events in their management are defined. This role enables access to the specialist email templates screen, from where their content is defined and their lifecycle is managed.
| Permission | Description Permit |
|---|---|
| Specialists.MailTemplates | Allows access to the Specialist Email Templates screen, where the notification templates available for this profile are configured. |
| MailTemplates.Add | It allows you to create a new email template for specialists, defining its subject, body and replacement variables. |
| MailTemplates.Update | Allows you to edit the content of an already created specialist email template. |
| MailTemplates.Delete | Allows you to remove a specialist mail template from the system configuration. |
| MailTemplates.List | Allows you to consult the list of email templates configured for specialists. |
| MailTemplates.GetObject | It allows you to consult the details of a specific email template for specialists. |
Specialist Manager
It allows the management of specialists in the tool, where the technical users or support agents in charge of attending to cases, tasks and projects within ASMS are defined. This role enables access to the specialists module, from where new accounts are created, their information is edited and their association with projects is managed.
| Permission | Description Permit |
|---|---|
| User.Update | It allows you to edit a specialist’s information, such as their contact details, associated projects, and profile settings. |
| User.GetObject | It allows you to consult the complete details of a specialist registered in the system. |
| User.Add | Allows you to register a new specialist in the system. |
| User.Delete | Allows you to remove a specialist from the system. |
| Specialists | It allows access to the specialist module and the visualization of its list. |
| User.ListSpecialist | It allows you to consult the list of users with a specialist profile. |
| CreateUser | It allows you to create users with a specialist profile. |
| GetUser | It allows you to obtain the basic information of a specialist user. |
| ManageUser | It allows you to comprehensively manage the data and status of a specialist user. |
Specialist Role
It allows a specialist to enter their work console, the interface from which they attend to the cases, tasks and projects that are assigned to them within ASMS. This role is the authentication base that enables the specialist’s operational access to the tool.
| Permission | Description Permit |
|---|---|
| Specialist_Console | It allows access to the specialist console, from where the technical user manages the assigned cases, tasks and projects. |
Specialist Surveys Administrator
It allows the administration of surveys aimed at specialists, where the evaluation forms used to measure their perception or performance within the ASMS management processes are defined. This role enables access to the specialist surveys screen, from where these forms are designed, published and maintained.
| Permission | Description Permit |
|---|---|
| Specialists.Surveys | It allows access to the specialist survey screen, where the evaluation forms aimed at this profile are administered. |
| Surveys.Add | It allows you to create a new survey for specialists, defining their questions and evaluation criteria. |
| Surveys.Update | Allows you to edit the content and settings of an already created specialist survey. |
| Surveys.Delete | Allows you to remove a specialist survey from the system settings. |
| Surveys.List | Allows you to consult the list of surveys configured for specialists. |
| Surveys.GetObject | It allows you to consult the details of a specific survey of specialists. |
Status Administrator
It allows the management of system states, where the stages through which a case, change, task or other object can go during its life cycle within ASMS (for example open, in process or closed) are defined. This role enables access to the status screen, from where its name, behavior and availability for the different types of cases are defined.
| Permission | Description Permit |
|---|---|
| States | It allows access to the status screen and the visualization of your listing. |
| States.Add | It allows you to create a new state, defining its name and behavior within the case flow. |
| States.Update | Allows you to edit the settings of an already created state. |
| States.Delete | Allows you to delete a state from the system configuration. |
| States.GetObject | It allows you to consult the details of a specific state, including its configuration. |
| States.List | It allows you to consult the complete list of states configured in the system. |
Supplier Additionals Administrator
It allows the management of additional supplier fields, where custom attributes are defined that complement the base information of a supplier company according to the particular needs of the organization. This role enables access to the configuration screen of additional supplier fields, from where the structure of these fields is defined and their lifecycle is managed.
| Permission | Description Permit |
|---|---|
| Suppliers.Additionals | Allows access to the Additional Vendor Fields screen, where the custom attributes available for this profile are configured. |
| Additionals.Add | It allows you to create a new additional field for vendors, defining their name, data type, and other configuration properties. |
| Additionals.Update | Allows you to edit the configuration of an additional vendor field that has already been created. |
| Additionals.Delete | Allows you to remove an additional vendor field from the system configuration. |
| Additionals.List | Allows you to view the complete list of additional fields configured for vendors. |
| Additionals.GetObject | Allows you to view the details of an additional vendor-specific field, including its settings and properties. |
Supplier Interface Administrator
It allows the administration of supplier integration interfaces, where the configurations that allow the information of the supplier companies to be synchronized or automatically imported from external systems to the tool are defined, mapping the source fields with the supplier attributes in ASMS. This role enables access to the supplier interfaces screen, from where the configuration of these integrations is consulted and edited.
| Permission | Description Permit |
|---|---|
| Suppliers.Interface | Allows access to the vendor interfaces screen, where the integration settings used to synchronize your information with external systems are managed. |
| Interface.Update | Allows you to edit the settings of a vendor interface, including field mapping and synchronization rules. |
| Interface.List | Allows you to view the list of integration interfaces configured for vendors. |
| Interface.GetObject | It allows you to consult the details of a supplier interface, including its configuration and status. |
Tariff Administrator
It allows the administration and configuration of the system’s rates, where the economic values that are associated with the time or effort invested by a specialist in the care of a case or project are defined, used as a basis for calculating costs. This role enables access to the rate configuration screen, from where these values are created, edited and deleted, as well as their association with the corresponding specialists.
| Permission | Description Permit |
|---|---|
| Tariff Settings | Allows access to the rate configuration screen, where the economic values used for costing are managed. |
| Tariff.Add | It allows you to create a new tariff, defining its value and its scope of application. |
| Tariff.Delete | Allows you to remove a fee from the system configuration. |
| Tariff.Update | Allows you to edit the value or settings of an already created rate. |
| User.ListSpecialist | It allows you to consult the list of available specialists to associate them with a rate. |
Task Administrator
It allows the management of system tasks, where the activities into which the execution of a case or a project is broken down are defined and that can be assigned to one or more specialists for their fulfillment. This role enables access to the tasks screen, from where these activities are created, edited, and deleted and their execution is tracked.
| Permission | Description Permit |
|---|---|
| Tasks | It allows access to the task screen and the display of your list. |
| Tasks.Add | It allows you to create a new task, assigning it to a case or project and to the responsible specialists. |
| Tasks.Update | Allows you to edit the information or status of an already created task. |
| Tasks.Delete | Allows you to delete a task from the system configuration. |
| Tasks.List | It allows you to consult the complete list of tasks registered in the system. |
| Tasks.GetObject | It allows you to consult the details of a specific task, including its status and those responsible. |
TeamsClient
It allows a specialist to access their work console and use the integration features available with Microsoft Teams from there, so they can manage their cases and notifications without leaving that collaboration platform.
| Permission | Description Permit |
|---|---|
| Specialist_Console | It allows access to the specialist console, a requirement to operate the integration functions with Microsoft Teams. |
| TeamsClient | Allows you to use the Microsoft Teams integration features available to the specialist. |
TeamsConfiguration
It allows you to manage and configure the ASMS integration with Microsoft Teams, as well as to consult the logs generated by said integration and manage the specific teams enabled in the system. This role enables access to the administrator’s console, from where the parameterization of this integration is centralized.
| Permission | Description Permit |
|---|---|
| Administrator_Console | Allows access to the admin console, a requirement to set up integration with Microsoft Teams. |
| TeamsConfiguration | Allows you to access and modify the configuration parameters of the integration with Microsoft Teams. |
| TeamsLogs | Allows you to view activity logs generated by Microsoft Teams integration. |
| TeamsManager | Allows you to manage Microsoft Teams enabled within the ASMS integration. |
Time Administrator
It allows the management of the times recorded in the system, where the times that a specialist dedicates to the attention of a case, task or project are defined, used as an input for the monitoring of management and cost calculation. This role enables access to the time screen, from where these records are recorded, edited and deleted.
| Permission | Description Permit |
|---|---|
| Times | It allows access to the time screen and the visualization of your list. |
| Times.Add | It allows you to record a new time, associating it with the corresponding case, task or project. |
| Times.Update | Allows you to edit an existing time record. |
| Times.Delete | Allows you to delete a time record from the system configuration. |
| Times.List | Allows you to consult the complete list of recorded times. |
| Times.GetObject | Allows you to consult the detail of a specific time record. |
Token Administrator
It enables the management of system integration tokens, where access credentials are defined that allow external applications or services to authenticate and consume the ASMS API securely, without the need to use a user’s credentials. This role enables access to the integration tokens screen, from where these credentials are generated, revoked, and managed.
| Permission | Description Permit |
|---|---|
| Integration Tokens | It allows access to the integration token screen and the display of the generated tokens. |
| Token.Add | It allows you to generate a new integration token, associated with a user and with a defined duration. |
| Token.Delete | Allows you to delete or revoke an existing integration token. |
| UpdateUser | Allows you to update the user data associated with an integration token. |