Roles
Tenant admins manage tenant resources; operators and viewers receive only the actions their role and grants allow.
Role-based access control in OpsRabbit combines tenant roles with resource-level grants. Roles determine broad administrative capability; grants decide who can read, write, use, or manage specific chats, agents, jobs, groups, service principals, and inherited connection access.

What this page covers
Use tenant roles for administration, not as a shortcut for every resource-level collaboration need.
Use user and group grants to share chats, agents, and scheduled jobs with the right permission level.
Use service principals for automation identities and keep grants reviewed, reasoned, and time bounded.
Operational detail
Role-based access control in OpsRabbit combines tenant roles with resource-level grants. Roles determine broad administrative capability; grants decide who can read, write, use, or manage specific chats, agents, jobs, groups, service principals, and inherited connection access.
Tenant admins manage tenant resources; operators and viewers receive only the actions their role and grants allow.
Read, write, manage, and use-style permissions control collaboration and runtime access on specific resources.
Add expiry, review dates, reasons, and ticket references when sharing sensitive operational resources.
Related pages