Roles & Permissions
Roles & Permissions
Every member of an organisation has a role that controls what they can see and do. There are four roles to assign, from most to least privileged.
The Four Roles
Admin
Full control over assets, data, members, and organisation settings. Admins can import assets, generate join links, and lock user accounts.
Editor
Can create, edit, and dispose assets, types, categories, and locations. Can export data. Cannot restore disposed assets, manage members, access organisation settings, or import assets.
Viewer
Read-only access to asset data. Can search and browse assets but cannot make changes.
Scanner
A mobile-focused role. Can view assets (like a Viewer) and additionally scan barcodes and change asset status via the mobile app's scanner. Cannot edit assets or access admin features.
Permission Matrix
| Action | Admin | Editor | Viewer | Scanner |
|---|---|---|---|---|
| View assets | ||||
| Add/edit assets | ||||
| Dispose assets | ||||
| Restore disposed assets | ||||
| Manage categories & types | ||||
| Manage locations | ||||
| Export assets | ||||
| Import assets | ||||
| Generate reports | ||||
| Manage members | ||||
| Organisation settings | ||||
| Change status and update asset info via scan |
Location-Based Access Control
When enabled, members can be restricted to specific locations. A restricted member can only see and manage assets at their assigned locations.
This is useful for organisations with multiple branches or departments where staff should only access assets at their own site.
- Admins always have full access regardless of location settings.
- Editors, viewers, and scanners can be set to All locations, No locations, or a specific set of locations.
Scanning exception: A member can always scan a barcode and view that asset, even if it belongs to a location outside their access. The scan requires an internet connection (the asset is fetched directly from the server), and what the member can see or do with it is still governed by their role. This supports legitimate scenarios like receiving transferred equipment — the asset is accessible only while in hand, and only online.
Location-based access is not enabled by default. Contact [email protected] to have it enabled for your organisation.
Support Role
You may occasionally see a Support role in your member list. This is assigned to the batapp support team when assisting your organisation and is not available for you to assign.
