Administration

Set responsibilities and permissions

Match access and decision authority to the work a person or integration performs.

Begin with responsibilities

Define who performs the work, who reviews it, who administers the workspace, and who can approve changes. Scope access to the relevant organization, site, records, and actions. Read access and approval authority answer different questions.

Separate responsibilities where needed

ResponsibilityTypical access to evaluate
OperatorView instructions, record observations, and complete permitted steps.
ReviewerInspect evidence and make assigned decisions.
AdministratorManage configuration and access under change controls.
Integration identityRead or act within a specific automated workflow.
AI agentRetrieve or propose within assigned scope; use explicit approval gates.

Test the boundaries

  • Verify both allowed and denied actions with representative roles.
  • Confirm restrictions on sensitive records and cross-site access.
  • Avoid sharing personal credentials with integrations.
  • Revoke access when responsibilities end, and review permissions periodically.

Have a question about your workspace?

Talk with Helix Open sandbox