Skip to main content

Access & roles

Route: /governance · Settings section

What it is

The place that explains who may do what in the tenant — and why an action was refused. Covers your own access, tenant roles, built-in roles, and agent roles.

What it is for

  • Understand permission errors (“why can’t I install a capa?”)
  • Design roles before inviting many users
  • Separate operator power from agent power

Where you are in the flow

★ Access & roles (design) → Users (assign people) → people use Office / My work

This is governance setup, not the live approval inbox (My work).

What you do here

  1. Check Your access if something is blocked.
  2. Review tenant / built-in roles.
  3. Adjust carefully; then assign people under Users.

Where work goes next

GoalNext
Assign a personUsers
Agent tool rightsDepartment Integrations + Agent Access tabs
Live approvalsMy work