Skip to main content

Permissions Reference

This page lists all permissions and which roles grant them. Permissions are checked throughout Plantrunner to control access to features and data.

note

These tables show what each role grants on its own. Since the Employee base role is always included, users with scoped admin roles (Customer Admin, Route Admin, etc.) also have all Employee permissions. For example, an Employee Admin can view customers, routes, and orders through their Employee base role, even though the Employee Admin role itself doesn't grant those permissions.

note

The Employee Admin role sits a layer above Route Admin and includes all Route Admin permissions in addition to its own (employees, pay periods, timesheets). That's why its column below mirrors Route Admin for routes, service visits, and plants.

Permission matrix​

Customers​

PermissionEmployeeAdminCustomer AdminRoute AdminOrder AdminEmployee Admin
ViewYesYesYesYesYesYes
Create--YesYes------
Edit--YesYes------
Delete--YesYes------

Routes​

PermissionEmployeeAdminCustomer AdminRoute AdminOrder AdminEmployee Admin
ViewYesYes--Yes--Yes
Create--Yes--Yes--Yes
Edit--Yes--Yes--Yes
Delete--Yes--Yes--Yes

The Operational Calendar uses route-view access. Scheduling a one-off visit uses route-create access.

Service Visits​

PermissionEmployeeAdminCustomer AdminRoute AdminOrder AdminEmployee Admin
ViewOwn onlyYes--Yes--Yes
CreateYesYes--Yes----
Manage--Yes--Yes--Yes

Plants​

PermissionEmployeeAdminCustomer AdminRoute AdminOrder AdminEmployee Admin
ViewYesYesYesYes--Yes
Create--YesYesYes--Yes
Edit--YesYesYes--Yes
Delete--YesYesYes--Yes
Log healthYesYesYesYes--Yes

Orders​

PermissionEmployeeAdminCustomer AdminRoute AdminOrder AdminEmployee Admin
ViewYesYes----Yes--
Create--Yes----Yes--
Edit--Yes----Yes--
Delete--Yes----Yes--

Employees​

PermissionEmployeeAdminCustomer AdminRoute AdminOrder AdminEmployee Admin
View--Yes------Yes
Create--Yes------Yes
Edit--Yes------Yes
Delete--Yes------Yes

Job Costing uses pay-period view access.

Timesheets​

PermissionEmployeeAdminCustomer AdminRoute AdminOrder AdminEmployee Admin
ViewOwn onlyYes------Yes
Manage--Yes------Yes

Pay Periods​

PermissionEmployeeAdminCustomer AdminRoute AdminOrder AdminEmployee Admin
View--Yes------Yes
Create--Yes------Yes
Edit--Yes------Yes
Delete--Yes------Yes

Company​

PermissionEmployeeAdminCustomer AdminRoute AdminOrder AdminEmployee Admin
Company settings--Yes--------
Billing management--Yes--------

How permissions are checked​

Permissions are evaluated based on the combination of all roles an employee holds. If any of their roles grants a permission, they have access.

For example, an employee with Employee + Order Admin roles can:

  • View customers, routes, plants (from Employee role)
  • Create their own service visits (from Employee role)
  • Create, edit, and delete orders (from Order Admin role)