Command Palette

Search for a command to run...

Log In
  1. Users
  2. Roles & Permissions

Roles & Permissions

Astalty has four user roles: Administrator, Manager, Team Member, and Support Worker. Each role has a default set of permissions, and two markers show where a default can be changed:

  • โš™ Per-user โ€” toggled for an individual user on their profile's Permissions tab (Users > [user] > Permissions). See Updating Roles and Permissions.
  • ๐Ÿ‘ฅ Whole role โ€” toggled for every user with that role at once under Settings > Permissions on the Premium plan. See Role Permissions.

There is also an Auditor role โ€” a strictly read-only role based on Team Member. Auditors gain visibility of user records, user documents and HR details for compliance review, but lose the Calendar, Tasks, Directory and Forms modules and can never create, update or delete anything.

Dashboard & Home

PermissionAdminManagerTeam MemberSupport Worker
Team Dashboardโœ…โœ…โœ•โœ•
Finance Dashboardโœ… โš™โœ… โš™โœ•โœ•
Home Pageโœ…โœ…โœ…โœ•

Tasks

PermissionAdminManagerTeam MemberSupport Worker
Task Boardโœ…โœ…โœ…โœ•
View, Create, Update & Delete Tasksโœ…โœ…โœ…โœ•
Delegate Tasksโœ…โœ…โœ• โš™โœ•
Update Tasks Owned by Othersโœ…โœ…โœ•โœ•
Reassign Tasksโœ…โœ…โœ•โœ•
View Task Invoicesโœ…โœ…โœ•โœ•
Override Charge Priceโœ…โœ…โœ… (non-contractors)โœ•

Calendar

PermissionAdminManagerTeam MemberSupport Worker
View & Manage Eventsโœ…โœ…โœ…โœ•
Manage Calendar Events for Other Usersโœ• โš™โœ• โš™โœ•โœ•
View Other Team Members' Calendarsโœ…โœ…โœ• ๐Ÿ‘ฅโœ•
External Calendar Integrationโœ…โœ…โœ…โœ•

Participants

PermissionAdminManagerTeam MemberSupport Worker
View All Participantsโœ…โœ…โœ… โš™โœ•
View Assigned Participants (My Participants)โœ…โœ…โœ…โœ•
View Limited Participant Detailโœ…โœ…โœ…โœ…
Create Participantsโœ…โœ…โœ…โœ•
Create Participants for Other Usersโœ…โœ…โœ•โœ•
Update Participantsโœ…โœ…โœ…โœ•
Delete Participantsโœ…โœ…โœ…โœ•
Archive Participantsโœ…โœ•โœ•โœ•
Update Coordinatorโœ…โœ…โœ…โœ•
Update Information Itemsโœ…โœ…โœ…โœ•
View Participant Invoices โ€ โœ… โš™โœ… โš™ ๐Ÿ‘ฅโœ• ๐Ÿ‘ฅโœ•

โ€  Admins and Managers see participant invoices when they have Finance module access (โš™). The ๐Ÿ‘ฅ role toggle grants invoices to Managers or Team Members without Finance access.

NDIS Plans & Services

PermissionAdminManagerTeam MemberSupport Worker
View Plans & Servicesโœ…โœ…โœ…โœ•
Create Plansโœ…โœ…โœ…โœ•
Update Plansโœ…โœ…โœ… โš™โœ•
Delete Plansโœ…โœ…โœ…โœ•
Create Servicesโœ…โœ…โœ… ๐Ÿ‘ฅโœ•
Update Servicesโœ…โœ…โœ… โš™โœ•
Delete Servicesโœ…โœ…โœ… ๐Ÿ‘ฅโœ•
Implementations (full access)โœ…โœ…โœ…โœ•
Budgets (full access)โœ…โœ…โœ…โœ•

Participant - Goals, Alerts, Risks & Records

PermissionAdminManagerTeam MemberSupport Worker
Goals (full access)โœ…โœ…โœ…โœ•
Alerts (full access)โœ…โœ…โœ…View only
Risks (full access)โœ…โœ…โœ…โœ•
Records (full access)โœ…โœ…โœ…โœ•
Documents (full access)โœ…โœ…โœ…โœ•
Participant Tags - Createโœ…โœ… ๐Ÿ‘ฅโœ… ๐Ÿ‘ฅโœ•
Participant Tags - Updateโœ…โœ… ๐Ÿ‘ฅโœ… ๐Ÿ‘ฅโœ•
Tags - Deleteโœ…โœ…โœ•โœ•
Preferences โ€ โœ…View onlyView onlyView only
Compatibilityโœ…โœ…โœ…โœ•
Generate Templatesโœ…โœ…โœ…โœ•
Sensitive Invoice Settingsโœ…โœ…โœ•โœ•

โ€  Managers get full Preferences access together with Access Scheduling Module (see Scheduling).

eSignatures

PermissionAdminManagerTeam MemberSupport Worker
Access eSignatures Moduleโœ… โš™โœ• โš™โœ• โš™โœ•
Create Signature Requestsโœ… โ€ โœ… โ€ โœ… โ€ โœ•
Create for Team Membersโœ… โ€ โœ•โœ•โœ•
Manage Signature Requests for Othersโœ• โš™โœ•โœ•โœ•
Delete Signed Requestsโœ… โ€ โœ•โœ•โœ•

โ€  Comes with Access eSignatures Module for that user โ€” not a separate toggle.

Incidents

PermissionAdminManagerTeam MemberSupport Worker
View All Participant Incidentsโœ…โœ…โœ•โœ•
View Scoped Participant Incidentsโœ…โœ…โœ…โœ•
Create Participant Incidentsโœ…โœ…โœ…โœ•
Update & Archive Participant Incidentsโœ…โœ…โœ•โœ•
View Staff Incidentsโœ…โœ•โœ•โœ•
Create Staff Incidentsโœ…โœ…โœ…โœ•
Update & Archive Staff Incidentsโœ…โœ•โœ•โœ•
Manage Incident Categoriesโœ…View onlyView onlyView only

Referrals

PermissionAdminManagerTeam MemberSupport Worker
View All Referralsโœ…โœ…โœ•โœ•
View Assigned Referralsโœ…โœ…โœ…โœ•
Create, Update & Archiveโœ…โœ…โœ•โœ•

Feedback

PermissionAdminManagerTeam MemberSupport Worker
View All Feedbackโœ…โœ…โœ•โœ•
View Assigned Feedbackโœ…โœ…โœ…โœ•
Create, Update & Archiveโœ…โœ…โœ•โœ•

Reports - Participants

PermissionAdminManagerTeam MemberSupport Worker
Utilisationโœ…โœ…โœ•โœ•
Plansโœ…โœ…My onlyโœ•
Birthdaysโœ…โœ…โœ•โœ•
Participant Alertsโœ…โœ…โœ…โœ•
Participant Goalsโœ…โœ…โœ…โœ•
Participant Recordsโœ…โœ…My onlyโœ•
Participant Risksโœ…โœ…โœ…โœ•
Participant Documentsโœ…โœ•โœ•โœ•
Participant Retention โ€ โœ…โœ…โœ•โœ•
Participant Reminder Statusโœ…โœ•โœ•โœ•
Participant Incompatibilityโœ…โœ…โœ•โœ•
Address Mapโœ…โœ•โœ•โœ•

โ€  Requires the Participant Retention feature to be enabled for your account.

Reports - Team

PermissionAdminManagerTeam MemberSupport Worker
My Billable Hoursโœ…โœ…โœ…โœ•
My Billablesโœ…โœ…โœ…โœ•
My Billable Chargesโœ…โœ•โœ• โš™โœ•
Team Billable Hoursโœ…โœ…โœ•โœ•
Team Billablesโœ…โœ…โœ•โœ•
User Records ยงโœ• โš™โœ•โœ•โœ•
Capacity Reportโœ…โœ•โœ•โœ•
My Capacityโœ…โœ…โœ…โœ•
Staff Birthdaysโœ…โœ•โœ•โœ•
User Unavailability โ€ โœ…โœ… โš™โœ•โœ•
Employment Details โ€กโœ• โš™โœ•โœ•โœ•
Address Mapโœ…โœ•โœ•โœ•

โ€  Requires the Scheduling add-on. Managers see it when they have Scheduling access. โ€ก Requires the Employment Details report feature (Premium) plus Scheduling, and the per-user Manage HR Details permission (off by default). Editing from the report also needs permission to update HR details. ยง Unlocked by the per-user User Records - Manage for Others permission (off by default).

Reports - Finance

PermissionAdminManagerTeam MemberSupport Worker
Billable Charges Reportโœ… โš™โœ… โš™โœ•โœ•
Staff Payments Reportโœ… โš™โœ•โœ•โœ•
Pay Groups Reportโœ…โœ•โœ•โœ•

Reports - Tasks

PermissionAdminManagerTeam MemberSupport Worker
All Tasks Reportโœ…โœ…โœ•โœ•
My Tasks Reportโœ…โœ…โœ…โœ•
Flagged Notes โ€ โœ…Assigned onlyโœ•โœ•

โ€  Requires the Note Flagging feature to be enabled. Admins see all flagged notes; Managers see those assigned to them.

Reports - Sites

PermissionAdminManagerTeam MemberSupport Worker
All Sites Records Reportโœ…โœ•โœ•โœ•
My Sites Records Reportโœ…โœ…โœ•โœ•

Directory

PermissionAdminManagerTeam MemberSupport Worker
View, Create & Update Plan Managersโœ…โœ…โœ…โœ•
Archive Plan Managersโœ…โœ•โœ•โœ•
Bulk Reassign Plan Managersโœ…โœ•โœ•โœ•
Plan Manager Tagsโœ…โœ…View onlyโœ•
View, Create & Update Organisationsโœ…โœ…โœ…โœ•
View All Organisationsโœ…โœ…โœ… ๐Ÿ‘ฅโœ•
Organisation Tagsโœ…โœ…Create & Update onlyโœ•
View All Contactsโœ…โœ…โœ… ๐Ÿ‘ฅโœ•
Create, Update & Delete Contactsโœ…โœ…โœ…โœ•

Resources

PermissionAdminManagerTeam MemberSupport Worker
View All Resourcesโœ…โœ…โœ…โœ…
Create & Update Resourcesโœ…โœ•โœ•โœ•
Resource Tagsโœ…โœ…View onlyView only

Finance

PermissionAdminManagerTeam MemberSupport Worker
Access Finance Moduleโœ… โš™โœ… โš™โœ•โœ•
Direct Chargesโœ• โš™โœ• โš™โœ•โœ•
Recurring Direct Chargesโœ• โš™โœ• โš™โœ•โœ•
Staff Payment Batchesโœ… โš™โœ•โœ•โœ•
Staff Payment Settingsโœ… โš™โœ•โœ•โœ•
Cost Codesโœ…โœ•โœ•โœ•
Timesheet Batchesโœ… โš™โœ•โœ•โœ•

Scheduling

PermissionAdminManagerTeam MemberSupport Worker
Access Scheduling Moduleโœ…โœ• โš™โœ•โœ•
View All Shiftsโœ…โœ… โ€ โœ•โœ•
View Own Shiftsโœ…โœ…โœ…โœ…
Clock In/Out (if rosterable)โœ…โœ…โœ…โœ…
Report Unscheduled Travelโœ…โœ…โœ…โœ…
Create, Update & Delete Shiftsโœ…โœ… โ€ โœ•โœ•
Manage Shift Statusโœ…โœ… โ€ โœ•โœ•
Shift Approvalsโœ…โœ… โ€ โœ•โœ•
Shift Boardโœ…โœ… โ€ โœ•โœ•
Supports (full access)โœ…โœ… โ€ โœ•โœ•
Group Supportsโœ…โœ… โ€ โœ•โœ•
Support Notes - Ownโœ…โœ…โœ…โœ…
Support Notes - Allโœ…โœ… โ€ โœ•โœ•
Support Chargesโœ…โœ… โ€ โœ•โœ•
Scheduling Costsโœ• โš™โœ•โœ•โœ•
Cancellation Reasonsโœ…View only โ€ โœ•โœ•
Charge Item Setsโœ…View onlyโœ•โœ•
Public Holidaysโœ…View only โ€ โœ•โœ•
Activitiesโœ…โœ… โ€ โœ•โœ•
Pay Groupsโœ…โœ•โœ•โœ•

โ€  Managers only when Access Scheduling Module is enabled for them โ€” a per-user toggle that is off by default. Scheduling access unlocks these permissions as a group; they can't be toggled individually, and there is no whole-role scheduling toggle.

Availability

PermissionAdminManagerTeam MemberSupport Worker
View All Availabilityโœ…โœ… โ€ โœ•โœ•
Manage Others' Availabilityโœ…โœ… โ€ โœ•โœ•
View Own Availabilityโœ…โœ…โœ…โœ…
Create Own Availabilityโœ…โœ…โœ…โœ…

โ€  Managers only when Access Scheduling Module is enabled for them (per-user toggle, off by default) โ€” unlocked together with the Scheduling permissions above.

Forms

PermissionAdminManagerTeam MemberSupport Worker
Manage Formsโœ…โœ•โœ•โœ•
Form Submissionsโœ…โœ•โœ•โœ•
Form Submission Requestsโœ…โœ•โœ•โœ•

Notes

PermissionAdminManagerTeam MemberSupport Worker
View Note Revisionsโœ…โœ…โœ•โœ•
Edit Notes Created by Othersโœ…โœ•โœ•โœ•

Documents & Templates

PermissionAdminManagerTeam MemberSupport Worker
Document Categories - Createโœ…โœ… ๐Ÿ‘ฅโœ… ๐Ÿ‘ฅโœ•
Document Categories - Updateโœ…โœ• ๐Ÿ‘ฅโœ• ๐Ÿ‘ฅโœ•
Document Categories - Archive/Restoreโœ…โœ•โœ•โœ•
Provider Document Templatesโœ…โœ•โœ•โœ•
Note Templatesโœ…View onlyView onlyโœ•

Notifications (Create & Manage)

PermissionAdminManagerTeam MemberSupport Worker
All Notification Typesโœ…View onlyโœ•โœ•
User Record Notificationsโœ…โœ•โœ•โœ•

Exports

PermissionAdminManagerTeam MemberSupport Worker
Access Exports Moduleโœ…โœ•โœ•โœ•
Login History ExportOwner onlyโœ•โœ•โœ•

Chat

PermissionAdminManagerTeam MemberSupport Worker
Create & Manage Channelsโœ…โœ•โœ•โœ•
Send Messagesโœ…โœ…โœ…โœ…
Edit & Delete Own Messagesโœ…โœ…โœ…โœ…
Delete Others' Messagesโœ…โœ•โœ•โœ•
Message Adminsโœ…โœ… โ€กโœ… โ€กโœ… โ€ก
Message Managersโœ…โœ… โ€กโœ… โ€กโœ… โ€ก
Message Team Membersโœ…โœ… โ€กโœ… โ€กโœ… โ€ก
Message Support Workersโœ…โœ… โ€กโœ… โ€กโœ… โ€ก

โ€ก Configurable role-wide via the who-can-message-who matrix under Settings > Chat โ€” not on the Role Permissions page.

SMS

PermissionAdminManagerTeam MemberSupport Worker
SMS Inbox Accessโœ… โš™โœ• โš™โœ• โš™โœ•

Sites

PermissionAdminManagerTeam MemberSupport Worker
View All Sitesโœ…โœ•โœ•โœ•
View Managed Sitesโœ…โœ…โœ•โœ•
Create & Delete Sitesโœ…โœ•โœ•โœ•
Update Sitesโœ…โœ…โœ•โœ•
Site Tagsโœ…View onlyโœ•โœ•
Site Recordsโœ…โœ…โœ•โœ•
Site Record Types & Notificationsโœ…View onlyโœ•โœ•
Site Forms & Participantsโœ…โœ…โœ•โœ•

Users & User Management

PermissionAdminManagerTeam MemberSupport Worker
View All Usersโœ…โœ…โœ•โœ•
View Admin Detailโœ…โœ•โœ•โœ•
View Manager Detailโœ…โœ•โœ•โœ•
View Team Member Detailโœ…โœ…โœ•โœ•
View Support Worker Detailโœ…โœ•โœ•โœ•
Create Usersโœ… โš™โœ•โœ•โœ•
Update Usersโœ…โœ•โœ•โœ•
Delete Usersโœ…โœ•โœ•โœ•
Restrict / Deactivate / Reactivateโœ…โœ•โœ•โœ•
Update Roles & Permissionsโœ…โœ•โœ•โœ•
Manage Permissions for Admin Usersโœ• โš™โœ•โœ•โœ•
Update User Groupsโœ…โœ•โœ•โœ•
Update Own Details on Webโœ…โœ…โœ…โœ•
Update Bank Detailsโœ… โš™โœ•โœ•โœ•
Update Financial Detailsโœ…โœ•โœ•โœ•
Manage HR Detailsโœ• โš™โœ•โœ•โœ•
User Documents & Generated Docsโœ• โš™โœ•โœ•โœ•
User Notesโœ• โš™โœ•โœ•โœ•
User Records - Ownโœ…View & createView & createView & create
User Records - Manage for Othersโœ• โš™โœ•โœ•โœ•
Auditor Assignmentโœ…โœ•โœ•โœ•
Disable Own 2FA โ€ โ€ โ€ โ€ โ€ 

โ€  Controlled by a single account-level security setting that only the Account Owner can change; it is unavailable while 2FA is enforced for the account. Account Owners can always disable their own 2FA.

Settings

PermissionAdminManagerTeam MemberSupport Worker
View & Update Settingsโœ…โœ•โœ•โœ•
Charge Itemsโœ…View onlyView list onlyโœ•
Information Itemsโœ…View onlyView onlyโœ•
User Groupsโœ…View list onlyView list onlyโœ•
Teamsโœ…View only, can be leaderโœ•โœ•
Record Types (Participant & User)โœ…View onlyView onlyโœ•
Leave Types โ€ โœ…View onlyView onlyโœ•
Regions โ€กโœ…View onlyView onlyโœ•
Importsโœ…โœ•โœ•โœ•

โ€  Requires the Scheduling feature. โ€ก Requires the Regions feature to be enabled for your account.

Account Owner Only

PermissionAdminManagerTeam MemberSupport Worker
Billing & SubscriptionOwner onlyโœ•โœ•โœ•
API KeysOwner onlyโœ•โœ•โœ•
WebhooksOwner onlyโœ•โœ•โœ•
Self-Serviceable FeaturesOwner onlyโœ•โœ•โœ•
Update Account OwnershipOwner onlyโœ•โœ•โœ•
Manage 2FA for Other UsersOwner onlyโœ•โœ•โœ•
Bulk Delete DocumentsOwner onlyโœ•โœ•โœ•
Note Deletion SettingOwner onlyโœ•โœ•โœ•

Other

PermissionAdminManagerTeam MemberSupport Worker
My Billable Hours Widgetโœ…โœ…โœ…โœ•

Legend

  • โœ… = Access granted by default
  • โœ• = No access by default
  • โš™ = Configurable per-user โ€” toggled for an individual on their profile's Permissions tab (Users > [user] > Permissions)
  • ๐Ÿ‘ฅ = Configurable for the whole role โ€” toggled under Settings > Permissions (Premium plan)
  • Owner only = Restricted to the Account Owner

Configurable Permissions Reference

The following section explains what each configurable permission does when enabled, including what additional features it unlocks. There are two types:

  • Per-user permissions (โš™) โ€” toggled individually for a specific user on their profile's Permissions tab (see Updating Roles and Permissions)
  • Whole-role permissions (๐Ÿ‘ฅ) โ€” toggled for all users of a given role under Settings > Permissions on the Premium plan (see Role Permissions)

Administrator โ€” Per-User Permissions

These permissions can be toggled on or off for individual Admin users.

PermissionDefaultWhat It Does
Create UsersONAllows creating and inviting new users to the account. Also allows reactivating deactivated users. When disabled, the admin cannot add new team members. โ†‘ Matrix
User Records - Manage for OthersOFFAllows viewing and managing user records across all users, not just their own. Also unlocks: the User Records report, and the ability to create, update, and delete User Record Types in Settings. โ†‘ Matrix
Access eSignatures ModuleONGrants access to the eSignatures module. Also unlocks: creating, updating, and deleting signature requests; managing owned signatures; creating signatures for team members; and deleting signed requests. โ†‘ Matrix
Manage Signature Requests for OthersOFFAllows viewing and managing signature requests created by other users. Requires: eSignatures access must also be enabled. โ†‘ Matrix
Access Finance ModuleONGrants access to the Finance module. Also unlocks: Finance Dashboard, Staff Payments module, View Participant Invoices, Update Bank Details, Billable Charges Report, Staff Payment Batches and Settings, and Timesheet Batches. โ†‘ Matrix
Direct ChargesOFFAllows creating and managing direct charges and recurring direct charges. Requires: Access Finance Module must also be enabled. โ†‘ Matrix
Manage HR DetailsOFFAllows viewing and managing HR details for users. Also unlocks: User Documents & Generated Docs, User Notes, and the Employment Details report (when that feature is enabled). โ†‘ Matrix
Manage Calendar Events for Other UsersOFFAllows creating and managing calendar events on behalf of other users. โ†‘ Matrix
Manage Scheduling CostsOFFAllows managing scheduling cost items and site cost items. โ†‘ Matrix
Manage Permissions for Admin UsersOFFAllows editing the roles and permissions of other Admin users. The Account Owner's permissions can never be edited. โ†‘ Matrix
SMS Inbox AccessONGrants access to the two-way SMS inbox. Requires: the SMS feature, which is included with the Premium plan. โ†‘ Matrix

Manager โ€” Per-User Permissions

These permissions can be toggled on or off for individual Manager users.

PermissionDefaultWhat It Does
Access Finance ModuleONGrants access to the Finance module. Also unlocks: Finance Dashboard, Billable Charges Report, and viewing participant invoices. โ†‘ Matrix
Access eSignatures ModuleOFFGrants access to the eSignatures module and the ability to create and manage their own signature requests. โ†‘ Matrix
Access Scheduling ModuleOFFGrants access to the Scheduling module. Also unlocks (as a group): View All Shifts, Create/Update/Delete Shifts, Manage Shift Status, Shift Approvals, Shift Board, Supports and Group Supports (full CRUD), Support Notes - All, Support Charges, Cancellation Reasons (view), Public Holidays (view), Activities, Participant Preferences (full), View All Availability, and Manage Others' Availability. These can't be toggled individually, and there is no whole-role scheduling toggle. Requires the Scheduling feature to be enabled for your account. โ†‘ Matrix
Direct ChargesOFFAllows creating and managing direct charges and recurring direct charges. Requires: Access Finance Module must also be enabled. โ†‘ Matrix
Manage Calendar Events for Other UsersOFFAllows creating and managing calendar events on behalf of other users. โ†‘ Matrix
SMS Inbox AccessOFFGrants access to the two-way SMS inbox. Requires: the SMS feature, which is included with the Premium plan. โ†‘ Matrix

Manager โ€” Whole-Role Permissions (๐Ÿ‘ฅ)

These permissions apply to all Manager users and can be toggled under Settings > Permissions. This is the complete list for Managers on that page โ€” the only other role-wide toggles are the chat messaging permissions under Settings > Chat.

PermissionDefaultWhat It Does
Document Categories - CreateONAllows all Managers to create new document categories. โ†‘ Matrix
Document Categories - UpdateOFFAllows all Managers to update existing document categories. โ†‘ Matrix
Participant Tags - CreateONAllows all Managers to create new participant tags. โ†‘ Matrix
Participant Tags - UpdateONAllows all Managers to update existing participant tags. โ†‘ Matrix
View Participant InvoicesOFFAllows all Managers to view invoices on participant profiles even without Finance module access. Managers with Finance access already see them. โ†‘ Matrix

Team Member โ€” Per-User Permissions

These permissions can be toggled on or off for individual Team Member users.

PermissionDefaultWhat It Does
View All ParticipantsONWhen enabled, the user can see all participants. When disabled, they can only see participants assigned to them. Also affects: participant alert, goal, and risk reports for all participants; plan manager participant visibility; organisation participant visibility; and contact participant visibility. โ†‘ Matrix
Delegate TasksOFFAllows the user to delegate tasks to other users. โ†‘ Matrix
Access eSignatures ModuleOFFGrants access to the eSignatures module and the ability to create and manage their own signature requests. โ†‘ Matrix
Update PlansONAllows the user to update participant NDIS plans. โ†‘ Matrix
Update ServicesONAllows the user to update participant plan services. Note: creating and deleting services can also be restricted at the role level for all Team Members. โ†‘ Matrix
My Billable ChargesOFFAllows the user to view their own billable charges report under Reports. โ†‘ Matrix
SMS Inbox AccessOFFGrants access to the two-way SMS inbox. Requires: the SMS feature, which is included with the Premium plan. โ†‘ Matrix

Team Member โ€” Whole-Role Permissions (๐Ÿ‘ฅ)

These permissions apply to all Team Member users and can be toggled under Settings > Permissions. This is the complete list for Team Members on that page โ€” the only other role-wide toggles are the chat messaging permissions under Settings > Chat.

PermissionDefaultWhat It Does
View All ContactsONAllows all Team Members to view all contacts in the directory. When disabled, they cannot browse the contacts list. โ†‘ Matrix
View All OrganisationsONAllows all Team Members to view all organisations in the directory. When disabled, they cannot browse the organisations list. โ†‘ Matrix
Create ServicesONAllows all Team Members to create new services under participant NDIS plans. โ†‘ Matrix
Delete ServicesONAllows all Team Members to delete services from participant NDIS plans. โ†‘ Matrix
Document Categories - CreateONAllows all Team Members to create new document categories. โ†‘ Matrix
Document Categories - UpdateOFFAllows all Team Members to update existing document categories. โ†‘ Matrix
Participant Tags - CreateONAllows all Team Members to create new participant tags. โ†‘ Matrix
Participant Tags - UpdateONAllows all Team Members to update existing participant tags. โ†‘ Matrix
View Participant InvoicesOFFAllows all Team Members to view invoices on participant profiles. โ†‘ Matrix
View Other Team Members' CalendarsOFFAllows all Team Members to view other team members' calendars. โ†‘ Matrix
View All Notes and TasksONAllows all Team Members to see every note and task across the organisation. When off, visibility falls back to the user-group option below. โ†‘ Matrix
View Notes and Tasks for Their User GroupONWhen "View all notes and tasks" is off, also lets Team Members see notes and tasks owned by others in their user group. โ†‘ Matrix

Other Configurable Permissions

PermissionDefaultWhat It Does
Disable Own 2FA (all roles)โ€”Controlled by a single account-level security setting, not per-user or per-role. Only the Account Owner can change it, and it is unavailable while 2FA is enforced for the account. Account Owners can always disable their own 2FA. โ†‘ Matrix
Message Admins / Managers / Team Members / Support WorkersONWhole-role settings controlling which roles each of Manager, Team Member, and Support Worker can start conversations with (Admins, Managers, Team Members, and/or Support Workers). All default to ON. Configured under Settings > Chat, not the Role Permissions page. โ†‘ Matrix