EN
Español
English
Português
    Roles and permissions

    Roles and Permissions

    The roles and permissions are detailed below with their respective description, which you can later configure in the console ASMSAdministrator in the session of Roles.


    ⚐ Note: To view the list of the Super Roles, go to Super Roles.


    Roles ASMS

    Accounting Manager

    It allows the management of project accounting, where the registration and control of the costs and revenues associated with the execution of a project are defined. This role enables access to the Accounting screen, from where the specialist can consult the financial history of a project and manage each of its movements.

    Permission Description Permit
    Accounting It allows access to the Accounting screen of a project, where the financial summary (costs and recorded revenues) associated with its execution is consulted.
    Costs.GetObject It allows you to consult the complete detail of a cost or income recorded in the accounting of a project, including its value, date, concept and associated cost center.
    Costs.Add It allows you to record a new cost or income in the accounting of a project, associating it with a cost center and a specific concept.
    Costs.List It allows you to consult the complete list of costs and revenues recorded in the accounting of a project, with their respective search filters.
    Costs.Update It allows you to modify the information of a previously recorded cost or income (value, concept, cost center, among others).
    Costs.Delete It allows you to permanently eliminate a cost or income recorded in the accounting of a project.


    Administrator Role

    It grants access to the administrator’s console, the central point from where all the modules of the solution (projects, roles, catalogs, forms, integrations, among others) are configured and parameterized. By assigning this role, the user obtains the gateway to the general administration of the tool.

    Permission Description Permit
    Administrator_Console It allows access to the administrator’s console, from where the configurations and modules available in the solution are centrally managed.


    Approval Administrator

    It allows the management of approval configurations, where the schemes that determine how, when, and who should authorize an item before continuing its flow are defined. From this role, the type of approver (internal or client), the number or percentage of votes required to approve or reject, the destination states according to the result obtained, and the configuration of reminders to pending voters are defined.

    Permission Description Permit
    Approvals It allows access to the approvals screen, where the approval configurations defined for projects are consulted.
    Approvals.Add Allows you to create a new approval configuration, indicating the project, form type, voters, and approval or rejection conditions.
    Approvals.Update Allows you to edit an existing approval settings, including voters, voting thresholds, and reminders.
    Approvals.Delete Allows you to delete an approval setting.
    Approvals.List Allows you to obtain the list of registered approval configurations.
    Approvals.GetObject Allows you to get the full detail of a one-time approval setup.


    All Project Viewer

    It grants access and visualization over all the projects configured in the solution, regardless of whether the user is explicitly associated with them. In addition, it enables the modification of the information and configurations of any project, which makes it a transversal role, useful for supervision or general administration profiles.

    Permission Description Permit
    Asdk-view and modify all projects It allows you to view and modify the information and configurations of all existing projects in the solution, even those to which the user is not directly associated.


    Area Administrator

    It allows the administration of organizational areas, which correspond to the same group entity, parameterized under the area type. From this role, the membership of users and specialists is managed, the area is associated with projects with their specific profile and calendar, and the areas of a project or the group responsible for a service or status are resolved, key information for the routing of work.

    Permission Description Permit
    Groups.Add It allows you to create an organizational area (group), defining its name, description, icon, responsible user and active status.
    Groups.Update It allows you to edit the information of an existing organizational area.
    Groups.Delete It allows you to eliminate an organizational area.
    Areas It allows access to the organizational areas screen, where the list of configured areas is consulted.
    Groups.ListArea It allows you to obtain the list of organizational areas associated with a project.
    Groups.GetObject It allows you to obtain the complete detail of an organizational area, including its membership and assigned calendar.
    Groups.AddProject It allows you to associate an organizational area with a project, defining the profile and schedule that apply to that project.
    Groups.DeleteProject It allows you to disassociate an organizational area from a project.


    It allows the management of banners, where the ads or messages that are displayed in the solution dashboard are defined. From this role, the text of the banner, the project to which it applies (or if it is global in scope) and its active or inactive status are defined.

    Permission Description Permit
    Banners It allows access to the banner screen, where the list of configured ads is consulted.
    Banners.Add It allows you to create a new banner, defining its name, text and the project or scope to which it applies.
    Banners.Update Allows you to edit an existing banner.
    Banners.Delete Allows you to delete a banner.
    Banners.GetObject It allows you to obtain the detail of a specific banner.
    Banners.List It allows you to obtain the list of banners, with the option to filter by project.


    Budgets Manager

    It allows the management of project budgets, where the registration and control of budgeted items by cost center or income are defined, and their comparison against the values actually executed. This role enables access to the Budgets screen, from where the specialist can consult the annual aggregate view (month-to-month value) and manage each budget movement.

    Permission Description Permit
    Budgets It allows access to the budget screen, where the budgeted value is consulted against the value executed by cost or income center.
    Costs.GetObject It allows you to consult the complete detail of a budgeted item, including its current value, its original value and the associated cost or income center.
    Costs.Add It allows a new budget item to be registered.
    Costs.List It allows you to obtain the list of registered budget items.
    Costs.Update Allows you to edit a posted budget item.
    Costs.Delete Allows you to eliminate a recorded budget item.


    Business Process Administrator

    It allows the management of business processes, where BPMN-type flows are defined that model the automated execution of a process within the solution. From this role, the process model is defined and associated with the services in the catalog and the projects where it must be executed.

    Permission Description Permit
    BusinessProcess It allows access to the business processes screen, where the list of modeled processes is consulted.
    BusinessProcess.List It allows you to obtain the list of business processes, filtering by project or by associated service.
    BusinessProcess.GetObject It allows you to obtain the detail of a business process, including the definition of its model.
    BusinessProcess.Add It allows you to create a new business process and optionally associate it with a project.
    BusinessProcess.Update It allows you to edit an existing business process, as well as its association with services and projects.
    BusinessProcess.Delete It allows you to eliminate a business process.


    Calendar Administrator

    This role allows for the management of calendars, where you define the hours of operation (with their exception days and time slots) that the SLA engine uses to calculate the business time due dates of projects, groups, and users.

    Permission Description Permit
    Calendars It allows access to the calendars screen, where the list of configured schedules is consulted.
    Calendars.Add It allows you to create a new calendar, defining its name, time zone, exception days and time slots.
    Calendars.Update Allows you to edit an existing calendar, including its time slots.
    Calendars.Delete Allows you to delete a calendar.
    Calendars.List Allows you to obtain the list of current calendars.
    Calendars.GetObject It allows you to obtain the complete detail of a calendar.


    Catalogs Manager

    It allows catalog management, where configurable and reusable value lists (flat or hierarchical in tree) are defined that feed additional fields of type list or tree, such as lists of equipment brands, document types or location trees.

    Permission Description Permit
    Catalogs It allows access to the catalog screen, from where catalogs and their values are managed, including the creation of hierarchical values and catalogs dependent on each other.


    ChangeSet Manager

    It allows the complete management of the ChangeSets, where the packages of schema or data changes (grouped SQL statements) that are deployed on the customer databases are defined. This role covers the entire cycle of the package: from its visualization and creation, to the closure, import and updating of its operations.

    Permission Description Permit
    ChangeSet It allows you to consult and view the registered ChangeSets, as well as the details of their operations (insertion, update or deletion) on each affected table.
    ChangeSet.Add Allows you to create a new ChangeSet.
    ChangeSet.Close Allows you to close a ChangeSet, leaving it inactive for future modifications.
    ChangeSet.Import It allows you to import a ChangeSet from a file, recording the import run with its date and status.
    ChangeSet.Update It allows you to update a ChangeSet, including the individual activation or deactivation of each operation before applying it.


    Chat Administrator

    It allows the administration and configuration of the system’s chat module. From this role, you define, by service and category, which template and what type of record (incident or service request) is automatically created when starting a conversation, as well as the level of escalation and the group of specialists that attend the chat in each project.

    Permission Description Permit
    Chat Settings It allows viewing and access to chat settings, including enabling the module per project.
    Chat.Setup It allows you to configure and parameterize the chat module, as well as manage which specialists are authorized to attend it.


    Client Additionals Administrator

    It has permissions for the management of additional customer fields, where configurable fields (text, date, list, numeric, file, catalog, among other types) are defined that are added to the customer form to capture information particular to the organization. An additional field can depend on another and be segmented by service category.

    Permission Description Permit
    Clients.Additionals It allows access to the screen of additional customer fields, where the list of configured fields is consulted.
    Additionals.Add It allows you to create a new additional customer field, defining its data type and dependencies.
    Additionals.Update It allows you to edit an additional existing customer field, as well as manage its possible values when it is of list type.
    Additionals.Delete Allows you to remove the definition of an additional customer field or its values.
    Additionals.List Allows you to obtain the list of additional fields of configured customers.
    Additionals.GetObject It allows you to obtain the detail of an additional field of customers, including the history of values registered for a customer.


    Client Groups Administrator

    It allows the administration of customer groups, where the same parameterized group entity is defined to group customers, typically used to give collective visibility in the self-service portal (for example, that all users of the same company see the same cases). From this role, the group is associated with a project with its own profile and calendar.

    Permission Description Permit
    ClientGroups It allows access to the customer groups screen, where the list of configured groups is consulted.
    Groups.Add It allows you to create a new customer group.
    Groups.Update Allows you to edit an existing customer group.
    Groups.Delete Allows you to delete a group of customers.
    Groups.GetObject It allows you to obtain the details of a group of customers, including their membership.
    Groups.List It allows you to obtain the list of customer groups.
    Groups.AddProject It allows you to associate a group of customers with a project, defining the profile and the calendar that apply to that project.
    Groups.DeleteProject Allows you to disassociate a group of customers from a project.


    Client Interface Administrator

    It allows the administration of the client interface, where the configuration by project and by model of the visible label of each field of the client form (technical name vs. translatable text) is defined, as well as its enablement, visibility, obligatoriness and dependence on other fields according to the stage of the flow. It defines how the client data form looks in the portal or in the console.

    Permission Description Permit
    Clients.Interface Allows access to the client interfaces screen, where the appearance and behavior of the client form is configured.
    Interface.Update It allows you to edit the client interface, including the label, visibility and enforceability of each field by stage of the flow.
    Interface.List It allows you to obtain the list of configured client interfaces.
    Interface.GetObject It allows you to get the detail of a client interface.


    Client Mail Template Administrator

    It allows the management of customer mail templates, where the messages (subject and body, translatable and HTML-supported) that are sent to customers in response to certain events are defined, such as the built-in self-registration notification template that is sent when a customer registers themselves in the portal.

    Permission Description Permit
    Clients.MailTemplates It allows access to the customer mail templates screen, where the list of configured templates is consulted.
    MailTemplates.Add It allows you to create a new customer mail template, specific to a project and model or generic scope.
    MailTemplates.Update Allows you to edit an existing customer mail template.
    MailTemplates.Delete Allows you to delete a customer mail template.
    MailTemplates.List It allows you to obtain the list of customer email templates, filtering by project or model.
    MailTemplates.GetObject It allows you to obtain the detail of a customer mail template, including the effective template that will be used if a specific one does not exist.


    Client Manager

    The role of customer manager is related to the management of customers in the tool, understanding a customer as any user whose associated type is Client (as opposed to the specialist). From this role, the customer’s information (document, company, contact, address, direct manager, calendar and assigned profile) is managed and its association with the projects in which it participates.

    Permission Description Permit
    Clients It allows access to the customer screen, where the information of the customer type users is consulted and managed.
    User.AddProject It allows you to associate a client with a project.
    User.DeleteProject It allows you to remove the association of a client to a project.
    User.Update Allows you to edit a customer’s information.
    User.GetObject It allows you to obtain the detail of a customer.
    User.Add It allows you to create a new customer.
    User.Delete Allows you to delete a customer.
    User.ListClient It allows you to obtain the list of clients, with the possibility of filtering by project, company or group.
    CreateUser Allows you to create a client user.
    GetUser Allows you to view the information of a client user.
    ManageUser It allows you to comprehensively manage the information and settings of a client user.


    Client Role

    Broad, predefined, system role, designed for Client users accessing the self-service portal: when you create such a user, the solution automatically assigns this role. It brings together the cross-cutting set of permissions that defines what a customer can see and do in the portal—knowledge base articles, first-party CIs, incidents, changes, service requests, SLAs, vendor, news, case-to-status relationships—a scope different from that of a specialist or internal agent role.

    Permission Description Permit
    Clients.Additionals Allows you to display the additional fields configured for the customer.
    Additionals.Add Allows you to record the value of an additional field.
    Additionals.Update Allows you to update the value of an additional field.
    Additionals.Delete Allows you to remove the value of an additional field.
    Approvals Allows you to view the approvals associated with your cases.
    Approvals.Add Allows you to record your vote on a pending approval.
    Approvals.Update Allows you to update the vote recorded in an approval.
    Approvals.Delete Allows you to delete the vote recorded in an approval.
    Additionals.List Allows you to obtain the list of additional fields configured.
    Additionals.GetObject Allows you to get the detail of an additional field.
    Approvals.List It allows you to obtain the list of approvals associated with your cases.
    Approvals.GetObject It allows you to obtain the detail of an approval.
    Add_Change_Note Allows you to add a note to a change.
    Add_Closed_Change_Note Allows you to add a note to a closed change.
    Add_Closed_Incident_Note Allows you to add a note to a closed incident.
    Add_Closed_ServiceCall_Note Allows you to add a note to a closed service request.
    Add_Incident_Note Allows you to add a note to an incident.
    Add_ServiceCall_Note Allows you to add a note to a service request.
    Articles.GetObject Allows you to consult the detail of an article in the knowledge base.
    Articles.List It allows you to obtain the list of knowledge base articles available to the customer.
    Banners.GetObject It allows you to consult the detail of a banner displayed on the portal.
    Banners.List It allows you to obtain the list of banners visible to the customer.
    Changes It allows access to the changes screen and the consultation of changes related to the customer.
    Cis.GetObject Allows you to view the detail of a customer’s own configuration item (CI).
    Cis.List It allows you to obtain the list of configuration elements (CIs) related to the client.
    Client_Console Allows access to the customer’s self-service portal or console.
    CreateDocument It allows you to attach documents to your cases.
    DeleteDocument Allows you to delete attachments in your cases.
    GetDocument Allows you to consult the attached documents in your cases.
    Groups.GetObject It allows you to consult the details of the group to which the customer belongs.
    Incidents It allows access to the incident screen and the consultation of the incidents reported by the customer.
    Items.Add It allows you to create a new item (case) from the portal.
    Items.GetObject It allows you to consult the detail of an item (case) of the customer.
    Items.List It allows you to obtain the list of items (cases) registered by the client.
    Items.Update It allows you to update the information of an item (case) of the customer’s own.
    News.List It allows you to obtain the list of news published on the portal.
    Projects.List It allows you to obtain the list of projects to which the client is associated.
    Relations.GetObject It allows you to consult the details of the relationships between your cases.
    ServiceCalls It allows access to the service requests screen and the consultation of those registered by the customer.
    Services.GetObject It allows you to consult the details of a service in the catalog available to the customer.
    Services.List It allows you to obtain the list of services from the catalog available to the customer.
    SLAs.GetObject Allows you to consult the detail of the SLA associated with a customer case.
    SLAs.List It allows you to obtain the list of SLAs associated with the customer’s cases.
    States.GetObject It allows you to consult the detail of a status within the flow of your cases.
    User.GetObject It allows you to consult the details of your own user information.
    User.Update Allows you to update your own user information.
    Vendor.GetObject It allows you to consult the details of the supplier or company to which it belongs.
    Vendor.ListCompany It allows you to obtain the list of supplier companies visible to the customer.


    Client Survey Administrator

    It allows the administration of customer satisfaction surveys, where you define the settings that trigger the sending of a survey when it reaches a certain status of a case (for example, when closing an incident), set the status to which it transitions once it is answered, and schedule the reminders, the template and the mail server used in the sending.

    Permission Description Permit
    Clients.Surveys It allows access to the customer surveys screen, where the list of configured surveys is consulted.
    Surveys.Add It allows you to create a new customer survey, defining your questions, the status that triggers your sending and the associated email template.
    Surveys.Update Allows you to edit an existing customer survey, including its questions and reminders.
    Surveys.Delete Allows you to delete a customer survey.
    Surveys.List Allows you to obtain the list of configured customer surveys.
    Surveys.GetObject It allows you to obtain the detail of a customer survey, including the shipment history and the registered responses.


    Company Additionals Administrator

    It allows the management of the additional fields configured for companies, where the complementary information that each organization needs to capture about its customers or suppliers beyond the standard fields of the form is defined. This role enables access to the additional fields of companies, from where the specialist defines the type of data, the length, the obligatory nature and the dependency of each additional field, in addition to the order in which they are presented in the form.

    Permission Description Permit
    Companys.Additionals Allows access to the additional company fields screen, where the list of fields configured for the company form is consulted.
    Additionals.Add It allows you to create a new additional field for the companies form, defining its data type, length and obligatory nature.
    Additionals.Update Allows you to edit the settings of an existing additional field in the companies form.
    Additionals.Delete Allows you to delete an additional field configured for the company form.
    Additionals.List It allows you to obtain the list of additional fields configured for the companies.
    Additionals.GetObject It allows you to consult the detail of an additional field configured for companies, including its data type, length and dependencies.


    Company Interface Administrator

    It allows the administration of the company interface, where the configuration of which fields of the company form are visible, mandatory or editable according to the status of the record is defined. This role enables access to the company interfaces screen, from where the specialist defines, for each state (active, inactive or other), the behavior of each field of the form without the need to modify the development of the application.

    Permission Description Permit
    Companys.Interface It allows access to the company interfaces screen, where the configuration of the form fields is consulted according to the status of the record.
    Interface.GetObject It allows you to consult the details of the configuration of a field in the company interface, including its visibility, mandatory nature and maximum length.
    Interface.List It allows you to obtain the list of interface configurations defined for the company form.
    Interface.Update Allows you to update the settings of a field in the Company Interface, such as visibility, enforceability, or status enablement.


    Company Manager

    It allows the configuration and management of the companies registered in the application, corresponding to the organization’s customers and suppliers. This role enables access to the companies screen, from where the specialist manages the information of each company and its association with the projects. In the data model, the company and the supplier correspond to the same type of entity, so the role jointly uses the company visibility permissions and the generic supplier administration permissions.

    Permission Description Permit
    Companys It allows you to view the list of companies registered in the application.
    Vendor.Add Allows you to create a new company in the app.
    Vendor.Update Allows you to edit the information of a registered company.
    Vendor.Delete Allows you to delete a registered company.
    Vendor.AddProject It allows you to associate a company with a project.
    Vendor.DeleteProject Allows you to remove the association of a company with a project.
    Vendor.ListCompany It allows you to obtain the list of companies registered in the application.
    Vendor.GetObject It allows you to consult the details of a registered company, including its information and associated projects.


    Contract Additionals Administrator

    It allows the administration of the additional fields configured for contracts, where the complementary information of the business (such as policy number, internal responsible or cost center) that is recorded in addition to the standard fields of the contract is defined. This role enables access to the additional fields of contracts screen, from where the specialist defines the type of data, the length, the obligatory nature and the dependency of each field, as well as the order in which they are presented in the form.

    Permission Description Permit
    Contract.Additionals It allows access to the additional contract fields screen, where the list of fields configured for the contract form is consulted.
    Additionals.Add It allows you to create a new additional field for the contract form, defining its data type, length and obligatory nature.
    Additionals.Update Allows you to edit the settings of an existing additional field in the contract form.
    Additionals.Delete Allows you to delete an additional field configured for the contract form.
    Additionals.List Allows you to obtain the list of additional fields configured for contracts.
    Additionals.GetObject It allows you to consult the detail of an additional field configured for contracts, including its data type, length and dependencies.


    Contract Mail Template Administrator

    It allows the management of the mail templates associated with the contracts, reusing the system’s generic messaging template engine (subject, body with HTML support, sender, option to hide header and default or factory default template marks). This role enables access to the contract mail templates screen, from where the specialist configures the notifications that are sent from contract events, such as the notice of upcoming expiration defined by its alarm flag and its days in advance.

    Permission Description Permit
    Contracts.MailTemplates Allows access to the contract mail templates screen, where the list of configured templates is consulted.
    MailTemplates.Add It allows you to create a new email template for contracts, defining its subject, body and sender.
    MailTemplates.Update Allows you to edit an existing contract mail template.
    MailTemplates.Delete Allows you to delete a contract mail template.
    MailTemplates.List It allows you to obtain the list of mail templates configured for contracts.
    MailTemplates.GetObject Allows you to consult the details of a contract mail template, including its content and configuration.


    Contract Status Administrator

    It allows the management of contract statuses, based on the generic entity of statuses that share contracts with cases, configuration items, services, service agreements, and tasks. This role enables access to the contract statuses screen, from where the specialist defines the name, description, and visual representation colors of each status, whether it corresponds to an initial or final state, the stage of the life cycle to which it belongs, and whether it requires a note to be recorded when transitioning to it, thus determining whether the contract is still in force or is already closed.

    Permission Description Permit
    Contract.States It allows access to the contract status screen, where the list of configured statuses for the contract lifecycle is consulted.
    States.Add It allows you to create a new status for contracts, defining their name, color, and whether it is a start or end status.
    States.Update Allows you to edit the settings of an existing contract status.
    States.Delete Allows you to delete a configured state for contracts.
    States.GetObject It allows you to consult the detail of a contract status, including its stage of the life cycle and its transition rules.
    States.List It allows you to obtain the list of configured statuses for contracts.


    Contracts Manager

    It allows the comprehensive management of contracts, broadly understood as financial documents (contracts, invoices or other documents depending on their type) that record number, description, economic value, warranty, start and end date of validity, days of notice notice and expiration alarm flag. This role enables access to the contracts screen, from where the specialist manages their relationship with the partner company, the type and model of the document, the area and the responsible user, the document template, the current status and reason for the last transition, as well as their relationships with configuration elements, services, service agreements, projects and other contracts (for example, a framework contract and its annexes).

    Permission Description Permit
    Contracts It allows access to the contracts screen, where the list of registered contracts is consulted.
    Contracts.List It allows you to obtain the list of contracts registered in the application.
    Contracts.Add It allows you to create a new contract, recording your financial information, your effective dates, and your relationship with the partner company.
    Contracts.Update Allows you to edit the information of a registered contract, including the recalculation of its expiration flag.
    Contracts.Delete Allows you to delete a registered contract.
    Contracts.GetObject It allows you to consult the details of a contract, including its financial information, validity, status and relationships.
    CreateDocument Allows you to attach a document to the contract.
    DeleteDocument Allows you to delete a document attached to the contract.
    GetDocument Allows you to consult a document attached to the contract.
    UpdateAccessObject Allows you to update the access object associated with the contract.


    Contracts Models Administrator

    It allows the administration of contract models, where templates are defined that establish what additional fields, statuses and behavior each type of contract has, following the same mechanism used by the Incident, Change and other case types models. This role enables access to the contract models screen, from where the specialist creates and adjusts the models that are then assigned when registering a contract.

    Permission Description Permit
    Contract.Models It allows access to the contract model screen, where the list of configured models is consulted.
    Models.Add It allows you to create a new contract model.
    Models.Update Allows you to edit the settings of an existing contract template.
    Models.Delete Allows you to delete a contract template.
    Models.GetObject It allows you to consult the details of a contract model, including its configuration of fields and behavior.


    CostCenters Manager

    It allows the management of cost centers, used to allocate and distribute the cost or income generated by projects, contracts, or other items of the system, for the purposes of budget control and internal invoicing. This role enables access to the cost centers screen, from where the specialist manages their name, description, accounting code, and hierarchy (parent cost center), as well as their association with projects and other items with a distribution percentage.

    Permission Description Permit
    CostCenters It allows access to the cost centers screen, where the hierarchical list of configured centers is consulted.
    CostCenters.List It allows you to obtain the list of registered cost centers.
    CostCenters.GetObject It allows you to consult the detail of a cost center, including its accounting code and its hierarchy.
    CostCenters.Update Allows you to edit the information in a posted cost center.
    CostCenters.Add It allows you to create a new cost center.
    CostCenters.Delete Allows you to delete a posted cost center.


    Display Administrator

    It allows you to customize the names of the visual groupings of the console, where the menus and regions of the interface are defined, without altering the functional logic of the application. This role enables access to the list of screens, from where the specialist modifies the display name, the translation key and the order of appearance of each section of the menu according to the screen region to which it belongs.

    Permission Description Permit
    Display.List It allows you to obtain the list of screens and their configurable visual groupings.
    Display.Update Allows you to update the display name, translation key, and order of a visual grouping in the console.


    Designer Administrator

    It allows visual customization (branding) of the different consoles of the product. This role enables access to the designer editor, from where the specialist identifies the brand and type of console, and configures colors, fonts, images, the login and console carousel, texts, the style file and the HTML preview, differentiating the predefined configurations from those created by the client.

    Permission Description Permit
    Designer It allows the visualization of the list of design configurations (branding) of the consoles.
    Designer.Add Allows you to create a new layout configuration for a console.
    Designer.Delete Allows you to delete an existing layout configuration.
    Designer.Update Allows you to update the colors, fonts, images, and other visual elements of a design configuration.


    EventLog Manager

    It allows the consultation of the system’s audit log, reusing the generic auditing engine. This role enables access to the EventLogs screen, from where the specialist filters the events by application or module where they occurred, user who executed the action, permission executed and date range, thus documenting which user performed what action, in which application and when, as a security audit trail and traceability of administrative operations.

    Permission Description Permit
    EventLogs It allows the visualization and consultation of the audit log (EventLogs), filtering by application, user, permission executed and date range.


    Forms Change Administrator

    The case capture form is dynamically assembled from a model, which groups and parameterizes its characteristics: additional fields, interfaces by status, statuses and transitions, approval processes, tasks, and access profiles. This role specifically manages the design of the Change capture form: it organizes the fields into sections (name, description, order, and field list) and defines their visual layout, so that the form seen by the end user is generated and validated dynamically according to those configurations, without the need to program a separate screen.

    Permission Description Permit
    Change.Forms Allows access to the Changes forms screen, where the fields that make up the capture form are organized into sections.
    Forms.Add Allows the addition of forms.
    Forms.Delete Allows for the deletion of forms.
    Forms.GetObject Allows you to get objects from forms.
    Forms.List Allows the list of forms.
    Forms.Update Allows the updating of forms.


    Forms Incident Administrator

    The case capture form is dynamically assembled from a model, which groups and parameterizes its characteristics: additional fields, interfaces by status, statuses and transitions, approval processes, tasks and access profiles. This role specifically manages the design of the Incident capture form: it organizes the fields into sections (name, description, order and list of fields) and defines their visual layout, so that the form seen by the end user is generated and validated dynamically according to those configurations, without the need to program a different screen.

    Permission Description Permit
    Forms.Add Allows form creation; access is limited to forms of the case type that the role manages.
    Forms.Delete Allows for the deletion of forms; access is limited to forms of the case type that the role manages.
    Forms.GetObject Allows you to view the detail of a form; access is limited to forms of the case type managed by the role.
    Forms.List Allows you to obtain the list of forms; access is limited to the forms of the type of case that the role manages.
    Forms.Update Allows form updating; access is limited to forms of the case type that the role manages.
    Incident.Forms It allows access to the Incident forms screen, where the fields that make up the capture form are organized into sections.


    Forms Problem Administrator

    The case capture form is dynamically assembled from a model, which groups and parameterizes its characteristics: additional fields, interfaces by status, statuses and transitions, approval processes, tasks, and access profiles. This role specifically manages the design of the Problem capture form: it organizes the fields into sections (name, description, order, and field list) and defines their visual layout, so that the form that the end user sees is generated and validated dynamically according to those settings, without the need to program a separate screen.

    Permission Description Permit
    Forms.Add Allows form creation; access is limited to forms of the case type that the role manages.
    Forms.Delete Allows for the deletion of forms; access is limited to forms of the case type that the role manages.
    Forms.GetObject Allows you to view the detail of a form; access is limited to forms of the case type managed by the role.
    Forms.List Allows you to obtain the list of forms; access is limited to the forms of the type of case that the role manages.
    Forms.Update Allows form updating; access is limited to forms of the case type that the role manages.
    Problem.Forms Allows access to the Problems forms screen, where the fields that make up the capture form are organized into sections.


    Forms Release Administrator

    A case capture form is dynamically assembled from a model, which groups and parameterizes its characteristics: additional fields, interfaces by status, statuses and transitions, approval processes, tasks, and access profiles. This role specifically manages the design of the Release capture form: it organizes the fields into sections (name, description, order, and field list) and defines their visual layout, so that the form that the end user sees is dynamically generated and validated according to those settings, without the need to program a separate screen.

    Permission Description Permit
    Release.Forms Allows access to the Release forms screen, where the fields that make up the capture form are organized into sections.
    Forms.Add Allows form creation; access is limited to forms of the case type that the role manages.
    Forms.Delete Allows for the deletion of forms; access is limited to forms of the case type that the role manages.
    Forms.GetObject Allows you to view the detail of a form; access is limited to forms of the case type managed by the role.
    Forms.List Allows you to obtain the list of forms; access is limited to the forms of the type of case that the role manages.
    Forms.Update Allows form updating; access is limited to forms of the case type that the role manages.


    Forms ServiceCall Administrator

    The case capture form is dynamically assembled from a model, which groups and parameterizes its characteristics: additional fields, interfaces by status, statuses and transitions, approval processes, tasks, and access profiles. This role specifically manages the design of the service call capture form (Service Request): it organizes the fields into sections (name, description, order, and field list) and defines their visual layout, so that the form seen by the end user is generated and validated dynamically according to those configurations, without the need to program a separate screen.

    Permission Description Permit
    Forms.Add Allows form creation; access is limited to forms of the case type that the role manages.
    Forms.Delete Allows for the deletion of forms; access is limited to forms of the case type that the role manages.
    Forms.GetObject Allows you to view the detail of a form; access is limited to forms of the case type managed by the role.
    Forms.List Allows you to obtain the list of forms; access is limited to the forms of the type of case that the role manages.
    Forms.Update Allows form updating; access is limited to forms of the case type that the role manages.
    ServiceCall.Forms Allows access to the service call forms screen, where the fields that make up the capture form are organized into sections.


    Forms Task Administrator

    A case capture form is dynamically assembled from a model, which groups and parameterizes its characteristics: additional fields, interfaces by status, statuses and transitions, approval processes, tasks, and access profiles. This role specifically manages the design of the Task capture form: it organizes the fields into sections (name, description, order, and field list) and defines their visual layout, so that the form seen by the end user is generated and validated dynamically according to those configurations, without the need to program a separate screen.

    Permission Description Permit
    Task.Forms Allows access to the Tasks forms screen, where the fields that make up the capture form are organized into sections.
    Forms.Add Allows form creation; access is limited to forms of the case type that the role manages.
    Forms.Delete Allows for the deletion of forms; access is limited to forms of the case type that the role manages.
    Forms.GetObject Allows you to view the detail of a form; access is limited to forms of the case type managed by the role.
    Forms.List Allows you to obtain the list of forms; access is limited to the forms of the type of case that the role manages.
    Forms.Update Allows form updating; access is limited to forms of the case type that the role manages.


    Group Administrator

    It allows the administration of groups that group users (specialists or clients) for work assignment and access control. This role enables access to the groups screen, from where the specialist manages their name, description, status, manager or supervisor, the cost and income associated with their members, as well as their association with projects, including the access profile that the group has in each one.

    Permission Description Permit
    Groups It allows access to the groups screen, where the list of registered groups is consulted.
    Groups.Add It allows you to create a new group, defining its name, description, manager and type (specialists, customers or supervisor).
    Groups.Update Allows you to edit the information of a registered group.
    Groups.Delete Allows you to delete a registered group.
    Groups.GetObject It allows you to consult the details of a group, including its users and associated projects.
    Groups.ListArea It allows you to obtain the list of organizational areas associated with a project.
    Groups.AddProject It allows you to associate a group with a project, defining its access profile in that project.
    Groups.DeleteProject Allows you to remove the association of a group with a project.


    IA Manager

    It allows you to configure, manage, and adjust different aspects of your AI deployment in the console.

    Permission Description Permit
    SetupIA It allows you to configure AI (Artificial Intelligence).
    SetupIA.AddConnectionPoint Allows you to add endpoint in AI settings.
    SetupIA.DeleteConnectionPoint Allows you to delete endpoint in AI settings.
    SetupIA.UpdateConnectionPoint Allows endpoint update in AI settings.
    SetupIA.UpdateTask Allows you to update task in AI settings.


    Invoices Manager

    It allows the management of invoices, a type of financial document (along with Contracts and Other Documents) that shares the same screen and management engine of “Financial Documents” of the Finance module, differing only by its type. From this role, access to the list of invoices, their life cycle (creation, editing and deletion) and the management of the supporting documents attached to each one are controlled.

    Permission Description Permit
    Invoices It allows access to the Invoices screen and the visualization of its list, within the Finance menu.
    Contracts.List Allows you to consult the list of registered invoices (the catalog shares the generic permissions of financial documents).
    Contracts.Add It allows you to create a new invoice, associating it with a project and, optionally, with a supplier and related CIs.
    Contracts.Update Allows you to edit the information of an invoice that has already been posted.
    Contracts.Delete Allows you to delete an invoice from the system.
    Contracts.GetObject It allows you to consult the complete detail of an invoice.
    CreateDocument Allows you to attach a supporting document to an invoice.
    DeleteDocument Allows you to remove an attachment from an invoice.
    GetDocument Allows you to download or consult a document attached to an invoice.
    UpdateAccessObject Allows you to modify the access list (record-level security) of the invoice.


    Licence Administrator

    It allows the administration of product licenses: the assignment of named and concurrent licenses to the different functional modules of ASMS (Incidents, Problems, Changes, Requests, Service Requests, Releases, Events, among others). From this role, you access the Licenses screen of the general configuration menu and control how many licenses of each type are available and how they are distributed.

    Permission Description Permit
    Licences Allows access to the Licenses screen and viewing the assignment status.
    Licences.Delete Allows you to delete a license assignment.
    Licences.Add Allows you to assign a new license (named or concurrent) to a module.
    Licences.Update Allows you to modify an existing license assignment.
    Licences.List It allows you to consult the list of licenses assigned by module.
    Licences.GetObject Allows you to consult the details of an assigned license.


    It allows the management of links (configurable shortcuts per project), identified in the menu as “Other Links”. Each link is defined with a name and a URL, and is available to the users of the corresponding project as a direct access to an external or internal site.

    Permission Description Permit
    Links.Add It allows you to create a new link, defining its name and destination URL.
    Links.Delete Allows you to delete an existing link.
    Links.GetObject It allows you to consult the detail of a link.
    Links.List Allows you to consult the list of configured links.
    Links.Update Allows you to edit the name or URL of an existing link.


    Locations Administrator

    It allows you to view, add, delete and update the physical locations registered in the console, a master catalog reused transversally by other modules: it is associated with users and specialists, with CIs in CMDB, and is used as a calculation criterion for SLA by location.

    Permission Description Permit
    Locations It allows access to the locations module and the visualization of its list.
    Locations.Add Allows you to create a new physical location in the catalog.
    Locations.Delete Allows you to delete a location from the catalog.
    Locations.Update Allows you to edit the information of an existing location.


    Mail Server Administrator

    It allows the administration of outgoing mail servers (SMTP), identified in the menu as “Outgoing Servers”, used by the system to send automatic notifications (includes support for Google Mail server detection).

    Permission Description Permit
    MailServers It allows access to the Outgoing Servers screen and the visualization of its list.
    MailServers.Add Allows you to register a new outgoing mail server.
    MailServers.Update Allows you to edit the settings of an existing mail server.
    MailServers.Delete Allows you to delete a registered mail server.
    MailServers.List Allows you to consult the list of configured mail servers.
    MailServers.GetObject It allows you to consult the details of a mail server.


    Map Administrator

    It allows the management and configuration of maps within the console: the definition of map providers (Google/Bing, including its API keys) by country, and the configuration of geofences (Geofences) used for the geolocation of CIs and mobile locations. Both screens – Map Settings and Geofences – share the same access permission.

    Permission Description Permit
    Map Settings Allows access to the Map and Geofence Settings screens.
    Map.Add Allows you to add a new map provider or a new geofence.
    Map.Delete Allows you to delete a map provider or configured geofence.
    Map.Update Allows you to update the settings of a map provider (for example, your API key) or a geofence.


    Matrix Administrator

    It allows the management of the priority matrix (Impact × Urgency → Priority), configurable by project and by case type, used by the system to automatically calculate the priority of a case based on the selected impact and urgency.

    Permission Description Permit
    Matrix Allows you to view the priority matrix settings.
    Matrix.Update It allows you to modify the combination of impact and urgency that determines the resulting priority.


    Model Administrator

    It allows the administration of Models, the base configuration that groups additional fields, approvals, statuses, tasks and mail templates associated with a record type. The same screen is reused in different modules depending on the context (Case Models in Service Desk, Contract Type in Finance, Types in Knowledge Base, Categories in CMDB); this role corresponds to the generic permission set without distinction of module.

    Permission Description Permit
    Models Allows you to view the list of configured models.
    Models.Add It allows you to create a new model.
    Models.Update Allows you to edit the configuration of an existing model.
    Models.Delete Allows you to delete a model.
    Models.List Allows you to get the list of models.
    Models.GetObject It allows you to consult the detail of a model, including its fields, approvals and associated statuses.


    News Administrator

    It allows the management of news published on the portal, including its title, subtitle, publication date and presentation mode (gallery, selector or thumbnails).

    Permission Description Permit
    News It allows you to view the list of published news.
    News.Add Allows you to create a new news story.
    News.Update Allows you to edit the content of an existing news item.
    News.Delete Allows you to delete a news item.
    News.List It allows you to obtain the list of news.
    News.GetObject It allows you to consult the detail of a news item.


    OtherDocuments Manager

    It allows the management of Other Documents, a type of financial document (along with Invoices and Contracts) that shares the same screen and administration engine of the Finance module, differing only by its type. From this role, access to the list, its life cycle and the management of the attached supporting documents are controlled.

    Permission Description Permit
    OtherDocuments It allows access to the Other Documents screen and the visualization of its list.
    Contracts.List It allows you to consult the list of other registered documents (the catalog shares the generic permissions of financial documents).
    Contracts.Add Allows you to create a new record from another document.
    Contracts.Update Allows you to edit the information of an existing record.
    Contracts.Delete Allows you to delete a record from another document.
    Contracts.GetObject Allows you to consult the detail of a record.
    CreateDocument Allows you to attach a supporting document to the record.
    DeleteDocument Allows you to delete an attachment.
    GetDocument Allows you to download or consult an attached document.
    UpdateAccessObject Allows you to modify the access list (record-level security) of the document.


    Project Manager

    This role allows you to manage projects, the root container for the configuration of a module instance (for example, a service desk), on which its branding, its default email account, its external authentication, and the models, rules, relationships and catalogs that are filtered or consulted “by project” depend.

    Permission Description Permit
    Projects Allows you to view the list of configured projects.
    Projects.Add Allows you to create a new project.
    Projects.Update Allows you to edit the settings of an existing project.
    Projects.Delete Allows you to delete a project.
    Projects.List Allows you to get the list of projects.
    Projects.GetObject Allows you to consult the detail of a project.


    Provider Manager

    This role handles everything related to Vendor management, a subtype of Company managed from the Vendors screen within the Company settings, including its link to projects for billing, assets, and contracts.

    Permission Description Permit
    Suppliers It allows access to the Suppliers screen and the display of its list.
    Vendor.Add It allows you to register a new supplier.
    Vendor.Update Allows you to edit the information of an existing supplier.
    Vendor.Delete Allows you to delete a vendor.
    Vendor.AddProject It allows you to associate a supplier with a project.
    Vendor.DeleteProject Allows you to disassociate a vendor from a project.
    Vendor.GetObject It allows you to consult the details of a supplier.
    Vendor.ListProvider Allows you to obtain the list of supplier companies.


    Recalculate dates

    It allows the recalculation of the times of a case based on its history (for example, after a change of calendar or shift), differentiating whether the case is open or already closed. It does not correspond to an administration screen, but to a functional action available on the cases.

    Permission Description Permit
    Recalculate_dates It allows you to recalculate the time history of an open case.
    Recalculate_dates_closed It allows you to recalculate the time history of a closed case.


    Relation Administrator

    It allows the management of the relationship types between system objects (for example, “Duplicate of” or “Related to”), used to link cases, articles, CIs and events to each other. The same screen is reused in different modules (Service Desk, Service Catalog, Knowledge Base, CMDB, Events); this role corresponds to the generic permission set without distinction of module.

    Permission Description Permit
    Relations Allows you to display the list of configured relationship types.
    Relations.Add It allows you to create a new type of relationship.
    Relations.Update Allows you to edit an existing relationship type.
    Relations.Delete Allows you to delete a relationship type.
    Relations.List Allows you to get the list of relationship types.
    Relations.GetObject Allows you to consult the details of a type of relationship.


    Risk Administrator

    Enables management of risk settings at the general level: the risk questionnaires (questions and answers) that are typically applied in CI maintenance and change management. Distinct from visibility permissions by model type (e.g. CI.Risks or Change.Risks), which only control whether that setting is displayed within a specific module.

    Permission Description Permit
    Risks It allows you to view the list of configured risk questionnaires.
    Risks.Add Allows you to create a new risk questionnaire.
    Risks.Update Allows you to edit an existing risk questionnaire.
    Risks.Delete Allows you to delete a risk questionnaire.
    Risks.List It allows you to obtain the list of risk questionnaires.
    Risks.GetObject It allows you to consult the details of a risk questionnaire.


    Routing Manager

    It allows the management of routings, identified in the menu as “Reassignments”: the engine of rules for the assignment and automatic reassignment of cases to groups or specialists, combining users, catalogs and configured shifts.

    Permission Description Permit
    Routings Allows access to the Reassignments screen and viewing of configured rules.
    Routings.List Allows you to get the list of routing rules.
    Routings.GetObject Allows you to view the detail of a routing rule.
    Routings.Update Allows you to edit an existing routing rule.
    Routings.Add Allows you to create a new routing rule.
    Routings.Delete Allows you to delete a routing rule.


    Rule Administrator

    It allows the management of rules at the general level: the automation engine that evaluates conditions and executes actions (including sending surveys) on system objects. The same screen is reused in different modules (Service Desk, Service Catalog, Knowledge Base, CMDB, Events); this role corresponds to the generic set of permissions without distinction of module, while visibility by model type is controlled with specific permissions such as CI.Rules or Incident.Rules.

    Permission Description Permit
    Rules Allows you to view the list of configured rules.
    Rules.Add It allows you to create a new rule, defining its conditions and actions.
    Rules.Update Allows you to edit an existing rule.
    Rules.Delete Allows you to delete a rule.
    Rules.List Allows you to obtain the list of rules.
    Rules.GetObject Allows you to consult the detail of a rule.


    Scheduled Notifications Administrator

    Allows the management and configuration of scheduled notifications within the system, available in the Service Catalog menu: allows scheduling the periodic sending of notifications associated with services and catalog categories.

    Permission Description Permit
    Scheduled_notifications Allows access to the Notification Program screen and the display of scheduled notifications.
    Scheduled_notifications. Add It allows you to create a new scheduled notification, associating it with a service or category.
    Scheduled_notifications. Delete Allows you to delete a scheduled notification.
    Scheduled_notifications. Update Allows you to edit an existing scheduled notification.


    Service Profile Administrator

    It allows the administration and management of service profiles, available in different modules (Service Desk, Service Catalog, Knowledge Base, CMDB): dynamic profiles that define which group or specialist attends to a case according to conditions (company, location, category, among others), and can also chain an approval flow.

    Permission Description Permit
    Model_Profile Allows access to the service profiles screen and viewing of configured profiles.
    Profile.Add It allows you to create a new service profile, defining its application conditions.
    Profile.Delete Allows you to delete a service profile.
    Profile.Update Allows you to edit an existing service profile.


    Settings Manager

    This is the broadest permissions role in the console: it groups the update of global system configuration parameters, mobile messaging management (MDMA), and the set of generic permissions that enable access to each of the ASMS administrative screens (companies, groups, users, roles, templates, reports, dashboards, among others), where each screen validates its own page permission (Create/Get/Update/Delete/Manage + name of the entity).

    ⚐ Note: The prefixed permissions block AMDM- corresponds to the administration of mobile devices (Aranda Mobile Device Management): application configuration, device enrollment, policies for Android, iOS and Windows, zones, templates and alerts related to enterprise mobile management.

    Permission Description Permit
    Settings Update Allows you to modify the global configuration parameters of the system, available on the Settings screen.
    AddInFolder Allows you to add items within a console-managed file system folder.
    AMDM-Alerts Allows access to Mobile Device Management (AMDM) alert management.
    AMDM-ApplicationSettings Provides access to the general settings of the Mobile Device Management (AMDM) application.
    AMDM-ApplicationSettings-ActivityLog Allows you to view the system activity log.
    AMDM-ApplicationSettings-ApplicationCategories Allows you to manage application categories.
    AMDM-ApplicationSettings-ApplicationCategories-Create Allows you to create categories of applications.
    AMDM-ApplicationSettings-ApplicationCategories-Delete Allows you to delete categories of applications.
    AMDM-ApplicationSettings-ApplicationCategories-Update Allows you to update categories of applications.
    AMDM-ApplicationSettings-Calendars Allows you to manage system calendars.
    AMDM-ApplicationSettings-Calendars-Apply Allows you to apply calendar settings.
    AMDM-ApplicationSettings-Calendars-ViewDevices Allows you to view devices associated with calendars.
    AMDM-ApplicationSettings-DynamicGroups Allows you to manage dynamic groups.
    AMDM-ApplicationSettings-EnterpriseIntegration It allows you to manage business integrations.
    AMDM-ApplicationSettings-EnterpriseIntegration-CMDB Allows you to configure integration with CMDB.
    AMDM-ApplicationSettings-EnterpriseIntegration-EMAIL Allows you to set up email integration.
    AMDM-ApplicationSettings-EnterpriseIntegration-LDAP Allows you to configure integration with LDAP.
    AMDM-ApplicationSettings-GlobalConfigurations Allows access to global system settings.
    AMDM-ApplicationSettings-GlobalConfigurations-UpdateConfiguration Allows you to update global settings.
    AMDM-ApplicationSettings-GroupPolicy Allows you to manage group policies.
    AMDM-ApplicationSettings-Groups Allows you to manage system groups.
    AMDM-ApplicationSettings-Licensing Allows you to manage system licenses.
    AMDM-ApplicationSettings-Mobile-AgentProfile Allows you to manage mobile agent profiles.
    AMDM-ApplicationSettings-Mobile-AgentProfile-Create Allows you to create mobile agent profiles.
    AMDM-ApplicationSettings-Mobile-AgentProfile-Delete Allows you to delete mobile agent profiles.
    AMDM-ApplicationSettings-Mobile-AgentProfile-Update Allows you to update mobile agent profiles.
    AMDM-ApplicationSettings-Mobile-Android It allows you to manage Android settings.
    AMDM-ApplicationSettings-Mobile-Android-DisableAndroidForWork Allows you to disable Android for Work.
    AMDM-ApplicationSettings-Mobile-Android-DisableAndroidManagementApi Allows you to disable the Android Management API.
    AMDM-ApplicationSettings-Mobile-Android-EnableAndroidForWork Enables Android for Work.
    AMDM-ApplicationSettings-Mobile-Android-EnableAndroidManagementApi Enables the Android Management API.
    AMDM-ApplicationSettings-Mobile-Enrollment Allows you to manage mobile enrollment.
    AMDM-ApplicationSettings-Mobile-Enrollment-UpdateConfiguration Allows you to update the enrollment settings.
    AMDM-ApplicationSettings-Mobile-iOS It allows you to manage iOS settings.
    AMDM-ApplicationSettings-Mobile-iOS-UpdateApnsCertificate Allows you to update the APNS certificate.
    AMDM-ApplicationSettings-Mobile-iOS-UpdateAppleBusinessManagerEnrolling Allows you to update Apple Business Manager settings.
    AMDM-ApplicationSettings-Mobile-iOS-UpdatePfxCertificate Allows you to update PFX certificates.
    AMDM-ApplicationSettings-Mobile-iOS-UpdateVolumePurchaseProgramToken Allows you to update VPP token.
    AMDM-ApplicationSettings-Mobile-Ping Allows you to set up mobile connectivity tests.
    AMDM-ApplicationSettings-Mobile-Ping-UpdateConfiguration Allows you to update your Ping settings.
    AMDM-ApplicationSettings-Mobile-RemoteSupport Allows you to manage mobile remote support.
    AMDM-ApplicationSettings-Mobile-Windows Allows you to manage Windows mobile settings.
    AMDM-ApplicationSettings-ScriptCommands It allows you to manage scripted commands.
    AMDM-ApplicationSettings-StatusDevice It allows you to visualize the status of the devices.
    AMDM-ApplicationSettings-Templates Allows you to manage system templates.
    AMDM-ApplicationSettings-Templates-UpdateAppTemplate Allows you to update application templates.
    AMDM-ApplicationSettings-Templates-UpdateEnrollTemplate Allows you to update enrollment templates.
    AMDM-ApplicationSettings-Templates-UpdateRecoveryTemplate Allows you to update recovery templates.
    AMDM-ApplicationSettings-Templates-UpdateTermsTemplate Allows you to update terms and conditions templates.
    AMDM-ApplicationSettings-Templates-UpdateWelcomeTemplate Allows you to update welcome templates.
    AMDM-ApplicationSettings-Users Allows you to manage system users.
    AMDM-ApplicationSettings-Zones Allows you to manage zones.
    AMDM-ApplicationSettings-Zones-Create Allows you to create zones.
    AMDM-ApplicationSettings-Zones-Delete Allows you to eliminate areas.
    AMDM-ApplicationSettings-Zones-Update Allows you to update zones.
    AMDM-Dashboard Allows access to the system dashboard.
    AMDM-Devices-DisableEnterpriseFactoryResetProtection Allows you to disable factory reset protection.
    AMDM-Devices-EnableEnterpriseFactoryResetProtection Enables factory reset protection.
    AMDM-PersonalSettings Allows you to manage personal settings.
    AMDM-PersonalSettings-ProfileEdit Allows you to edit your personal profile.
    AMDM-Reports It allows access to system reports.
    CreateAlert Allows you to create alerts.
    CreateAuthorization Allows you to create authorizations.
    CreateAuthProvider Allows you to create authentication providers.
    CreateCategory Allows you to create categories.
    CreateComment Allows you to create comments.
    CreateCompany It allows you to create companies.
    CreateConfigurationLDAP Allows you to create LDAP configurations.
    CreateDashboard It allows you to create dashboards.
    CreateDocument It allows you to create documents.
    CreateFields Allows you to create custom fields.
    CreateFolder Allows you to create folders.
    CreateGroup Allows you to create groups.
    CreateLocation Allows you to create locations.
    CreateMailAccount Allows you to create email accounts.
    CreateMailTemplate Allows you to create email templates.
    CreateProject It allows you to create projects.
    CreateReport Allows you to create reports.
    CreateRole It allows you to create roles.
    CreateRule Allows you to create rules.
    CreateTemplate It allows you to create templates.
    CreateUser Allows you to create users.
    DeleteAlert Allows you to delete alerts.
    DeleteAuthorization Allows you to delete authorizations.
    DeleteAuthProvider Allows you to remove authentication providers.
    DeleteCategory Allows you to delete categories.
    DeleteComment Allows you to delete comments.
    DeleteCompany Allows you to delete companies.
    DeleteConfigurationLDAP Allows LDAP configurations to be deleted.
    DeleteDashboard Allows you to delete dashboards.
    DeleteDocument Allows you to delete documents.
    DeleteFields Allows you to delete fields.
    DeleteFolder Allows you to delete folders.
    DeleteGroup Allows you to delete groups.
    DeleteLocation Allows you to delete locations.
    DeleteMailAccount Allows you to delete email accounts.
    DeleteMailTemplate Allows you to delete email templates.
    DeleteProject Allows you to delete projects.
    DeleteReport Allows you to delete reports.
    DeleteRole Allows you to delete roles.
    DeleteRule Allows you to delete rules.
    DeleteTemplate Allows you to delete templates.
    DeleteUser Allows users to be deleted.
    GetAlert It allows you to obtain the details of alerts.
    GetAuthorization It allows you to obtain the details of authorizations.
    GetAuthProvider It allows you to obtain the details of authentication providers.
    GetCategory It allows you to obtain the detail of categories.
    GetCompany It allows you to obtain the details of companies.
    GetConfigurationLDAP Allows you to obtain the detail of LDAP configurations.
    GetDashboard It allows you to obtain the detail of dashboards.
    GetDocument It allows you to obtain the detail of documents.
    GetFields Allows you to obtain the detail of fields.
    GetFolder Allows you to obtain the detail of folders.
    GetGroup It allows you to obtain the detail of groups.
    GetLocation It allows you to obtain the detail of locations.
    GetMailAccount It allows you to obtain the details of email accounts.
    GetMailTemplate It allows you to obtain the detail of email templates.
    GetProject It allows you to obtain the detail of projects.
    GetReport It allows you to obtain the detail of reports.
    GetRole It allows you to obtain the detail of roles.
    GetRule Allows you to obtain the detail of rules.
    GetTemplate It allows you to obtain the detail of templates.
    GetUser It allows you to obtain the details of users.
    ManageAlert Allows you to manage alerts.
    ManageAuthorization Allows you to manage authorizations.
    ManageAuthProvider Allows you to manage authentication providers.
    ManageCategory Allows you to manage categories.
    ManageComment Allows you to manage comments.
    ManageCompany It allows you to manage companies.
    ManageConfigurationLDAP Allows LDAP configurations to be managed.
    ManageDashboard It allows you to manage dashboards.
    ManageDocument Allows you to manage documents.
    ManageFields Allows you to manage fields.
    ManageFolder Allows you to manage folders.
    ManageGroup Allows you to manage groups.
    ManageLocation Allows you to manage locations.
    ManageMail Allows you to manage mailings.
    ManageMailAccount Allows you to manage email accounts.
    ManageMailTemplate Allows you to manage mail templates.
    ManageProject It allows you to manage projects.
    ManageReport It allows you to manage reports.
    ManageRole Allows you to manage roles.
    ManageRule Allows you to manage rules.
    ManageTemplate Allows you to manage templates.
    ManageUser Allows you to manage users.
    ScheduleReport It allows you to schedule the execution of reports.
    SendMail Allows you to send emails.
    Settings Allows access to system settings.
    UpdateAccessObject Allows you to update access objects.
    UpdateAlert Allows you to update alerts.
    UpdateAuthProvider Allows you to update authentication providers.
    UpdateCategory Allows you to update categories.
    UpdateCompany Allows companies to be updated.
    UpdateConfigurationLDAP Allows LDAP configurations to be updated.
    UpdateDashboard It allows you to update dashboards.
    UpdateDocument Allows you to update documents.
    UpdateFields Allows you to update fields.
    UpdateFolder Allows you to update folders.
    UpdateGroup Allows you to update groups.
    UpdateLocation Allows you to update locations.
    UpdateMailAccount Allows you to update email accounts.
    UpdateMailTemplate Allows you to update email templates.
    UpdateProject Allows you to update projects.
    UpdateReport Allows you to update reports.
    UpdateRole Allows you to update roles.
    UpdateRule Allows you to update rules.
    UpdateTemplate Allows you to update templates.
    UpdateUser Allows you to update users.


    Specialist Additionals Administrator

    It allows the management of additional specialist fields, where custom attributes are defined that complement the base information of a specialist (technical user or support agent) according to the particular needs of the organization. This role enables access to the configuration screen of additional specialist fields, from where the structure of these fields is defined and their lifecycle is managed.

    Permission Description Permit
    Specialists.Additionals Allows access to the additional specialist fields screen, where the custom attributes available for the specialist profile are configured.
    Additionals.Add It allows you to create a new additional field for specialists, defining their name, data type and other configuration properties.
    Additionals.Update Allows you to edit the settings of an additional specialist field already created, including its name, data type, or other properties.
    Additionals.Delete It allows you to remove an additional field of specialists from the system configuration.
    Additionals.List Allows you to consult the complete list of additional fields configured for specialists.
    Additionals.GetObject It allows you to consult the details of an additional field specific to specialists, including their configuration and properties.


    Specialist Interface Administrator

    It allows the administration of the specialist integration interfaces, where the configurations that allow the synchronization or automatic import of the information of specialists from external systems to the tool are defined, mapping the source fields with the attributes of the ASMS specialist. This role enables access to the screen of specialist interfaces, from where the configuration of these integrations is consulted and edited.

    Permission Description Permit
    Specialists.Interface Allows access to the Specialist Interfaces screen, where the integration settings used to synchronize your information with external systems are managed.
    Interface.Update Allows you to edit the settings of a specialist interface, including field mapping and synchronization rules.
    Interface.List Allows you to consult the list of integration interfaces configured for specialists.
    Interface.GetObject It allows you to consult the details of a specialist interface, including its configuration and status.


    Specialist Mail Template Administrator

    It allows the administration of the email templates associated with specialists, where the predefined notification models that the system uses to communicate by email with specialists in the event of relevant events in their management are defined. This role enables access to the specialist email templates screen, from where their content is defined and their lifecycle is managed.

    Permission Description Permit
    Specialists.MailTemplates Allows access to the Specialist Email Templates screen, where the notification templates available for this profile are configured.
    MailTemplates.Add It allows you to create a new email template for specialists, defining its subject, body and replacement variables.
    MailTemplates.Update Allows you to edit the content of an already created specialist email template.
    MailTemplates.Delete Allows you to remove a specialist mail template from the system configuration.
    MailTemplates.List Allows you to consult the list of email templates configured for specialists.
    MailTemplates.GetObject It allows you to consult the details of a specific email template for specialists.


    Specialist Manager

    It allows the management of specialists in the tool, where the technical users or support agents in charge of attending to cases, tasks and projects within ASMS are defined. This role enables access to the specialists module, from where new accounts are created, their information is edited and their association with projects is managed.

    Permission Description Permit
    User.Update It allows you to edit a specialist’s information, such as their contact details, associated projects, and profile settings.
    User.GetObject It allows you to consult the complete details of a specialist registered in the system.
    User.Add Allows you to register a new specialist in the system.
    User.Delete Allows you to remove a specialist from the system.
    Specialists It allows access to the specialist module and the visualization of its list.
    User.ListSpecialist It allows you to consult the list of users with a specialist profile.
    CreateUser It allows you to create users with a specialist profile.
    GetUser It allows you to obtain the basic information of a specialist user.
    ManageUser It allows you to comprehensively manage the data and status of a specialist user.


    Specialist Role

    It allows a specialist to enter their work console, the interface from which they attend to the cases, tasks and projects that are assigned to them within ASMS. This role is the authentication base that enables the specialist’s operational access to the tool.

    Permission Description Permit
    Specialist_Console It allows access to the specialist console, from where the technical user manages the assigned cases, tasks and projects.


    Specialist Surveys Administrator

    It allows the administration of surveys aimed at specialists, where the evaluation forms used to measure their perception or performance within the ASMS management processes are defined. This role enables access to the specialist surveys screen, from where these forms are designed, published and maintained.

    Permission Description Permit
    Specialists.Surveys It allows access to the specialist survey screen, where the evaluation forms aimed at this profile are administered.
    Surveys.Add It allows you to create a new survey for specialists, defining their questions and evaluation criteria.
    Surveys.Update Allows you to edit the content and settings of an already created specialist survey.
    Surveys.Delete Allows you to remove a specialist survey from the system settings.
    Surveys.List Allows you to consult the list of surveys configured for specialists.
    Surveys.GetObject It allows you to consult the details of a specific survey of specialists.


    Status Administrator

    It allows the management of system states, where the stages through which a case, change, task or other object can go during its life cycle within ASMS (for example open, in process or closed) are defined. This role enables access to the status screen, from where its name, behavior and availability for the different types of cases are defined.

    Permission Description Permit
    States It allows access to the status screen and the visualization of your listing.
    States.Add It allows you to create a new state, defining its name and behavior within the case flow.
    States.Update Allows you to edit the settings of an already created state.
    States.Delete Allows you to delete a state from the system configuration.
    States.GetObject It allows you to consult the details of a specific state, including its configuration.
    States.List It allows you to consult the complete list of states configured in the system.


    Supplier Additionals Administrator

    It allows the management of additional supplier fields, where custom attributes are defined that complement the base information of a supplier company according to the particular needs of the organization. This role enables access to the configuration screen of additional supplier fields, from where the structure of these fields is defined and their lifecycle is managed.

    Permission Description Permit
    Suppliers.Additionals Allows access to the Additional Vendor Fields screen, where the custom attributes available for this profile are configured.
    Additionals.Add It allows you to create a new additional field for vendors, defining their name, data type, and other configuration properties.
    Additionals.Update Allows you to edit the configuration of an additional vendor field that has already been created.
    Additionals.Delete Allows you to remove an additional vendor field from the system configuration.
    Additionals.List Allows you to view the complete list of additional fields configured for vendors.
    Additionals.GetObject Allows you to view the details of an additional vendor-specific field, including its settings and properties.


    Supplier Interface Administrator

    It allows the administration of supplier integration interfaces, where the configurations that allow the information of the supplier companies to be synchronized or automatically imported from external systems to the tool are defined, mapping the source fields with the supplier attributes in ASMS. This role enables access to the supplier interfaces screen, from where the configuration of these integrations is consulted and edited.

    Permission Description Permit
    Suppliers.Interface Allows access to the vendor interfaces screen, where the integration settings used to synchronize your information with external systems are managed.
    Interface.Update Allows you to edit the settings of a vendor interface, including field mapping and synchronization rules.
    Interface.List Allows you to view the list of integration interfaces configured for vendors.
    Interface.GetObject It allows you to consult the details of a supplier interface, including its configuration and status.


    Tariff Administrator

    It allows the administration and configuration of the system’s rates, where the economic values that are associated with the time or effort invested by a specialist in the care of a case or project are defined, used as a basis for calculating costs. This role enables access to the rate configuration screen, from where these values are created, edited and deleted, as well as their association with the corresponding specialists.

    Permission Description Permit
    Tariff Settings Allows access to the rate configuration screen, where the economic values used for costing are managed.
    Tariff.Add It allows you to create a new tariff, defining its value and its scope of application.
    Tariff.Delete Allows you to remove a fee from the system configuration.
    Tariff.Update Allows you to edit the value or settings of an already created rate.
    User.ListSpecialist It allows you to consult the list of available specialists to associate them with a rate.


    Task Administrator

    It allows the management of system tasks, where the activities into which the execution of a case or a project is broken down are defined and that can be assigned to one or more specialists for their fulfillment. This role enables access to the tasks screen, from where these activities are created, edited, and deleted and their execution is tracked.

    Permission Description Permit
    Tasks It allows access to the task screen and the display of your list.
    Tasks.Add It allows you to create a new task, assigning it to a case or project and to the responsible specialists.
    Tasks.Update Allows you to edit the information or status of an already created task.
    Tasks.Delete Allows you to delete a task from the system configuration.
    Tasks.List It allows you to consult the complete list of tasks registered in the system.
    Tasks.GetObject It allows you to consult the details of a specific task, including its status and those responsible.


    TeamsClient

    It allows a specialist to access their work console and use the integration features available with Microsoft Teams from there, so they can manage their cases and notifications without leaving that collaboration platform.

    Permission Description Permit
    Specialist_Console It allows access to the specialist console, a requirement to operate the integration functions with Microsoft Teams.
    TeamsClient Allows you to use the Microsoft Teams integration features available to the specialist.


    TeamsConfiguration

    It allows you to manage and configure the ASMS integration with Microsoft Teams, as well as to consult the logs generated by said integration and manage the specific teams enabled in the system. This role enables access to the administrator’s console, from where the parameterization of this integration is centralized.

    Permission Description Permit
    Administrator_Console Allows access to the admin console, a requirement to set up integration with Microsoft Teams.
    TeamsConfiguration Allows you to access and modify the configuration parameters of the integration with Microsoft Teams.
    TeamsLogs Allows you to view activity logs generated by Microsoft Teams integration.
    TeamsManager Allows you to manage Microsoft Teams enabled within the ASMS integration.


    Time Administrator

    It allows the management of the times recorded in the system, where the times that a specialist dedicates to the attention of a case, task or project are defined, used as an input for the monitoring of management and cost calculation. This role enables access to the time screen, from where these records are recorded, edited and deleted.

    Permission Description Permit
    Times It allows access to the time screen and the visualization of your list.
    Times.Add It allows you to record a new time, associating it with the corresponding case, task or project.
    Times.Update Allows you to edit an existing time record.
    Times.Delete Allows you to delete a time record from the system configuration.
    Times.List Allows you to consult the complete list of recorded times.
    Times.GetObject Allows you to consult the detail of a specific time record.


    Token Administrator

    It enables the management of system integration tokens, where access credentials are defined that allow external applications or services to authenticate and consume the ASMS API securely, without the need to use a user’s credentials. This role enables access to the integration tokens screen, from where these credentials are generated, revoked, and managed.

    Permission Description Permit
    Integration Tokens It allows access to the integration token screen and the display of the generated tokens.
    Token.Add It allows you to generate a new integration token, associated with a user and with a defined duration.
    Token.Delete Allows you to delete or revoke an existing integration token.
    UpdateUser Allows you to update the user data associated with an integration token.