Only Org Admins can access this page. Everyone else is redirected to the
dashboard.
System templates vs. custom templates
Every organization starts with three built-in system templates, shown with a “System” badge:
System templates are read-only — opening one from the table shows its
permissions but doesn’t let you edit or delete it. You can create your own
custom templates alongside these to grant a narrower or different mix of
permissions (for example, a “Contractor” role that can only access certain
MCP tools).
Creating a custom role template
- Go to Roles in the dashboard and click Create Role.
- Give it a name — a URL-safe slug is generated automatically from the name, or you can adjust it yourself.
- Optionally add a description.
- Toggle on the permissions you want the role to grant, organized into four
sections:
- Organization — Admin or Member level org access
- Features — app-level feature flags (currently: Roles Management)
- MCP Server — Access (connect and use the MCP server) or Admin (full MCP server admin)
- MCP Tools — grouped by category (User Management, Role Management, Organizations, Departments, Engineering Framework, Projects, Planning); each toggle grants access to that specific tool for an AI assistant connected via this role
- Click Create Template. You need at least a name, a slug, and one permission toggled on.
Editing a custom role template
Open a custom (non-system) template from the table and click Edit. Change its name, description, or permission toggles, then Save Changes.Deleting a custom role template
Open the template’s row menu and choose Delete, then confirm. Deleting a template revokes its permissions from every user assigned to it — again, only the permissions not also granted by one of their other roles are actually removed, so a user with multiple overlapping roles won’t lose access they still have through another role. System templates cannot be deleted.Assigning and revoking roles
Role assignment happens from the Users page, not from the Roles page itself:- Open a user’s edit dialog (or their permissions sheet) from the Users table.
- You’ll see their currently assigned role templates (any system role except Super Admin, plus any custom templates for your organization, are selectable).
- Toggle a role on to assign it — this immediately grants that template’s permissions to the user. Toggle it off to revoke — this removes the template’s permissions, unless the user retains them through another assigned role.
- New users can also be assigned one or more role templates directly from the Invite User dialog.