Roles & permissions

Roles & permissions

A role is a named set of permissions you can assign to members of your community. Instead of giving someone full admin access, you create a role (e.g. "Moderators", "Event team", "Finance") with exactly the permissions they need and assign members to it. A member can hold more than one role; their effective access is the union.

Manage roles in the admin app under Settings → Roles.

The Founder role

Every community is created with a system Founder role that holds every permission, and the creator is its first member. The Founder role:

  • cannot be deleted,
  • is capped at 2 members (the owner plus one co-founder), and
  • can only be assigned by an existing founder.

Permission catalog

What each permission lets a role do:

Content

PermissionLets the role…
Manage channelsCreate, edit, and delete feed channels
Moderate feedRemove or pin any member's post (not just their own)
Pin postsPin and unpin posts in the feed
Post announcementsPost in the announcements channel

Members

PermissionLets the role…
Review requestsApprove or decline membership applications
Invite membersSend invitations
Generate invite URLCreate shareable invite links
Kick membersRemove members
Ban membersPermanently ban members

Events & marketplace

PermissionLets the role…
Create events / productsList new events or products
Manage event / marketplace listingsEdit and remove listings

Community

PermissionLets the role…
BrandingManage branding and appearance
Onboarding formConfigure the membership application form
PrerequisitesSet membership prerequisites
RulesManage community rules
AtlasManage Atlas categories

Sensitive — founder-only to grant

PermissionLets the role…
PayoutsView and manage community finances
Manage rolesCreate roles and assign permissions
Access admin appLog in to the admin dashboard

Rules that protect owner-level access

A few guardrails keep delegated role management from becoming a backdoor to owner control:

  • Sensitive permissions are founder-only to grant. A member with Manage roles can build and assign roles, but cannot grant Payouts, Manage roles, or Access admin app unless they are a founder — so a role admin can't escalate their own access.
  • No self-assignment. You can't change your own roles; a second person with Manage roles (or a founder) does it.
  • Founder is protected. Only a founder can add someone to the Founder role, and the 2-founder cap holds everywhere — direct assignment, invitations, and automations alike.
  • Member post deletion is owner-scoped. Every member can delete their own posts; deleting another member's post requires Moderate feed.

Who can see member contact info

Roles also gate access to member data. A member's email and application-form answers are visible to leaders holding Review requests (and similar member-management permissions) — never to other members, and never on public profiles. See Auth & page access.