Understanding Roles and Permissions
Understand Roles and Permissions in AssetLoom
AssetLoom uses a Role-Based Access Control (RBAC) system to manage user access across the platform. In an RBAC system, a user’s permissions are not assigned individually. Instead, access is controlled through roles, which are collections of permissions.
This means:
- Permissions define what actions can be performed in the system
- Roles group these permissions into dedicated access levels
- Users are assigned roles to determine what they can access
Types of Roles
AssetLoom supports two types of roles:
- Default Roles: Predefined roles provided by AssetLoom (Admin, Editor, Viewer). Note that the permission sets within the default Admin role cannot be modified.
- Custom Roles: Roles you create by selecting specific permissions based on your organization’s needs
Permission Structure
Permissions are grouped by resource type. Each resource contains a set of actions that define what a user can do in that area. Below is the full permission structure available in AssetLoom:
Assets
| Permission Name | What it allows in AssetLoom |
|---|---|
| View all assets | View all assets in the system regardless of ownership or assignment |
| View assigned assets | View only assets assigned to the user |
| Create assets | Create new assets in the system |
| Edit assets | Modify existing asset details |
| Delete assets | Permanently remove assets from the system |
| Restore assets | Restore previously deleted assets |
| Import assets | Import asset data from external sources |
| Export assets | Export asset data from the system |
| Manage custody verifications | Manage verification and custody tracking for assets |
Accessories
| Permission Name | What it allows in AssetLoom |
|---|---|
| View all accessories | View all accessories in the system |
| View assigned accessories | View only accessories assigned to the user |
| Create accessories | Create new accessories |
| Edit accessories | Modify existing accessories |
| Delete accessories | Remove accessories from the system |
| Restore accessories | Restore deleted accessories |
| Import accessories | Import accessories from external sources |
| Export accessories | Export accessory data |
| Check in accessories | Return accessories from users back into inventory |
| Check out accessories | Assign accessories to users |
Licenses
| Permission Name | What it allows in AssetLoom |
|---|---|
| View all licenses | View all licenses in the system |
| View assigned licenses | View only licenses assigned to the user |
| Create licenses | Create new licenses |
| Edit licenses | Modify existing licenses |
| Delete licenses | Remove licenses from the system |
| Restore licenses | Restore deleted licenses |
| Import licenses | Import licenses from external sources |
| Export licenses | Export license data |
| Check in licenses | Return licenses from users |
| Check out licenses | Assign licenses to users |
Components
| Permission Name | What it allows in AssetLoom |
|---|---|
| View all components | View all components in the system |
| Create components | Create new components |
| Edit components | Modify existing components |
| Delete components | Remove components |
| Restore components | Restore deleted components |
| Import components | Import components from external sources |
| Export components | Export component data |
| Check in components | Return components from users |
| Check out components | Assign components to users |
Consumables
| Permission Name | What it allows in AssetLoom |
|---|---|
| View all consumables | View all consumables in the system |
| View assigned consumables | View only consumables assigned to the user |
| Create consumables | Create new consumables |
| Edit consumables | Modify existing consumables |
| Delete consumables | Remove consumables from the system |
| Restore consumables | Restore deleted consumables |
| Import consumables | Import consumables from external sources |
| Export consumables | Export consumable data |
| Check out consumables | Assign consumables to users |
Custom Fields
| Permission Name | What it allows in AssetLoom |
|---|---|
| View custom fields | View all custom fields in the system |
| Create custom fields | Create new custom fields |
| Edit custom fields | Modify existing custom fields |
| Delete custom fields | Remove custom fields from the system |
| Export custom fields | Export custom field data |
Asset Models
| Permission Name | What it allows in AssetLoom |
|---|---|
| View asset models | View all asset models in the system |
| Create asset models | Create new asset models |
| Edit asset models | Modify existing asset models |
| Delete asset models | Remove asset models |
| Import asset models | Import asset models from external sources |
| Export asset models | Export asset model data |
Departments
| Permission Name | What it allows in AssetLoom |
|---|---|
| View departments | View all departments |
| Create departments | Create new departments |
| Edit departments | Modify existing departments |
| Delete departments | Remove departments |
| Import departments | Import departments |
| Export departments | Export department data |
Categories
| Permission Name | What it allows in AssetLoom |
|---|---|
| View categories | View all categories |
| Create categories | Create new categories |
| Edit categories | Modify existing categories |
| Delete categories | Remove categories |
| Export categories | Export category data |
Depreciations
| Permission Name | What it allows in AssetLoom |
|---|---|
| View depreciations | View depreciation rules |
| Create depreciations | Create depreciation rules |
| Edit depreciations | Modify depreciation rules |
| Delete depreciations | Remove depreciation rules |
Locations
| Permission Name | What it allows in AssetLoom |
|---|---|
| View locations | View all locations |
| Create locations | Create new locations |
| Edit locations | Modify existing locations |
| Delete locations | Remove locations |
| Import locations | Import locations from external sources |
| Export locations | Export location data |
Suppliers
| Permission Name | What it allows in AssetLoom |
|---|---|
| View suppliers | View all suppliers |
| Create suppliers | Create new suppliers |
| Edit suppliers | Modify existing suppliers |
| Delete suppliers | Remove suppliers |
| Import suppliers | Import supplier data |
| Export suppliers | Export supplier data |
Manufacturers
| Permission Name | What it allows in AssetLoom |
|---|---|
| View manufacturers | View all manufacturers |
| Create manufacturers | Create new manufacturers |
| Edit manufacturers | Modify existing manufacturers |
| Delete manufacturers | Remove manufacturers |
| Import manufacturers | Import manufacturers |
| Export manufacturers | Export manufacturer data |
Statuses
| Permission Name | What it allows in AssetLoom |
|---|---|
| View statuses | View all statuses |
| Create statuses | Create new statuses |
| Edit statuses | Modify existing statuses |
| Delete statuses | Remove statuses |
| Export statuses | Export status data |
Reservations
| Permission Name | What it allows in AssetLoom |
|---|---|
| Check out reservations | Assign reservations to users |
| Decline reservation requests | Reject reservation requests |
| Remove reservation assignments | Remove reservation allocations |
People
| Permission Name | What it allows in AssetLoom |
|---|---|
| View people | View all people in the system |