feature
Role-Based Access Control
Four roles with 34 granular permissions to control team access.
Inori now supports fine-grained access control so every team member sees only what they need.
- Four roles — Admin, Manager, Auditor, and Viewer, each with a distinct permission set tailored to their responsibilities.
- 34 permissions across 12 categories — Covering projects, records, vendors, certificates, requirements, compliance, reports, bulk operations, team management, settings, vendor portal, and notifications.
- Role assignment on invite — Choose a role when inviting a new team member. Change it anytime from Settings.
- Last Admin protection — The system prevents removing or downgrading the last Admin to ensure the organization always has full access.
- Permission enforcement — UI elements are hidden or disabled based on the user's role. API endpoints enforce the same rules server-side.
- Audit trail attribution — All actions are logged with the user's identity and role for accountability.