Roles and Permissions

Roles exist mostly to control one thing: who can see candidate data. Assessment sessions are personal data and they are detailed. Access should be limited to people who need it.

The roles

Owner — everything, including billing and deleting the organization. One per organization; transferable.

Admin — everything except billing and organization deletion. Manages team, assessments, tasks, and candidates.

Author — creates and edits assessments and custom tasks. Sees reports for assessments they own, not the whole pipeline.

Reviewer — reads reports and replays for the assessments they are assigned to. Cannot change assessments or invite candidates. The right role for most hiring managers.

Recruiter — invites candidates and tracks invitation status. Sees scores and summaries, not full session replays.

The principle

Narrower is better. A hiring manager who needs a report does not need to watch a replay of every other candidate's session.

Two reasons: your obligations as the controller of that data get harder the more people can reach it, and candidate data is exactly the kind of thing that should not be casually browsable.

Assignment-scoped access

Reviewers see only the assessments they are assigned to. Assign from the assessment's Access tab. This is how you let a manager review their own pipeline without opening the whole organization.

Audit log

Enterprise plans record who viewed which candidate report and when. If you hire in a regulated environment or a jurisdiction with automated-decision disclosure rules, you will eventually be asked for this.