solarOSsolarOS Docs
Reference

solarOS resolves access from a fixed permission catalog mapped to platform roles. OWNER bypasses this matrix entirely (hardcoded in the resolution engine, not a row in RolePermission); every other role below is an exact role-permission grant. Generated from PERMISSIONS and ROLE_PERMISSION_MATRIX in apps/web/prisma/seed-helpers/seed-permissions.ts.

PermissionDescriptionADMINSALES_MANAGERSALES_USEROPERATIONS_MANAGEROPERATIONS_USERTECHNICIANMEMBER
customers.view_ownView customers assigned to youYesYesYes
customers.view_allView all customer records in the organizationYesYesYesYes
customers.view_unassignedView customers not assigned to anyoneYesYesYesYesYes
customers.createCreate new customer recordsYesYesYesYesYes
customers.editEdit existing customer recordsYesYesYesYesYes
customers.deleteDelete customer recordsYesYesYes
customers.assignAssign customers to team membersYesYesYesYes
customers.reassignChange the accountable owner of an existing customer recordYesYesYes
leads.view_ownView leads assigned to youYesYes
leads.view_allView all lead records in the organizationYesYesYesYes
leads.view_unassignedView leads not assigned to anyoneYesYesYesYesYes
leads.createCreate new leadsYesYesYesYesYes
leads.editEdit existing leadsYesYesYesYesYes
leads.deleteDelete lead recordsYesYesYes
leads.assignAssign leads to team membersYesYesYesYes
leads.reassignChange the accountable owner of an existing leadYesYesYes
opportunities.view_ownView opportunities assigned to youYesYes
opportunities.view_allView all opportunities in the organizationYesYesYesYes
opportunities.view_unassignedView opportunities not assigned to anyoneYesYesYesYesYes
opportunities.createCreate new opportunitiesYesYesYesYesYes
opportunities.editEdit existing opportunitiesYesYesYesYesYes
opportunities.deleteDelete opportunity recordsYesYesYes
opportunities.reassignChange the accountable owner of an existing opportunityYesYesYes
quotes.view_ownView quotes you created or are assigned toYesYes
quotes.view_allView all quotes in the organizationYesYesYesYes
quotes.view_unassignedView quotes not assigned to anyoneYesYesYesYesYes
quotes.createCreate new quotesYesYesYesYesYes
quotes.editEdit existing quotesYesYesYesYesYes
quotes.deleteDelete quote recordsYesYesYes
quotes.approveApprove quotes for customer deliveryYesYesYes
quotes.sendSend quotes to customersYesYesYesYesYes
quotes.assignAssign quotes to team membersYesYesYesYes
quotes.reassignChange the accountable owner of an existing quoteYesYesYes
quotes.adjustments.write_inAdd one-off pricing adjustments that are not in the pricing catalogYesYes
tasks.view_ownView Own tasksYesYesYes
tasks.view_allView All tasksYesYesYesYes
tasks.view_unassignedView Unassigned tasksYesYesYesYes
tasks.createCreate tasksYesYesYesYes
tasks.editEdit tasksYesYesYesYes
tasks.deleteDelete tasksYesYes
projects.view_ownView projects assigned to youYesYesYes
projects.view_allView all projects in the organizationYesYesYesYes
projects.view_unassignedView projects not assigned to anyoneYesYesYesYes
projects.createCreate new projectsYesYesYesYes
projects.editEdit existing projectsYesYesYesYes
projects.deleteDelete project recordsYesYes
projects.assignAssign projects to team membersYesYesYes
projects.reassignChange the accountable owner of an existing projectYesYesYes
projects.manage_templatesCreate and edit project templatesYesYes
projects.change_orders.approveApprove, reject, or void project change ordersYesYes
media.uploadUpload media to a visible project media galleryYesYesYesYesYes
media.deleteSoft-delete media from a visible project media galleryYesYesYes
work_orders.view_ownView work orders assigned to youYesYesYes
work_orders.view_allView all work orders in the organizationYesYesYesYes
work_orders.view_unassignedView work orders not assigned to anyoneYesYesYes
work_orders.createCreate new work ordersYesYesYes
work_orders.editEdit existing work ordersYesYesYes
work_orders.deleteDelete work order recordsYesYes
work_orders.completeMark work orders as completeYesYesYesYes
appointments.createCreate or schedule service appointments on a work orderYesYesYes
reports.view_ownView reports you submittedYesYesYes
reports.view_allView all reports in the organizationYesYesYesYes
reports.createCreate field reportsYesYesYesYes
reports.editEdit report contents after creationYesYesYesYes
reports.deleteSoft-delete report recordsYesYes
reports.reviewReview and approve submitted reportsYesYes
reports.email_customerSend customer-facing report emailsYesYes
reports.create_quoteCreate follow-up quotes from report outcomesYesYesYes
billing.view_ownView your own invoices and paymentsYesYes
billing.view_allView all invoices and payment historyYesYesYesYes
billing.createCreate new invoicesYesYesYesYes
billing.manageManage payments and process refundsYesYes
billing.field_invoiceSend invoices and collect or record customer payments from the technician work-order experienceYes
users.viewView the users listYesYesYesYes
users.inviteSend invitations to join the organizationYes
users.edit_roleChange another user's roleYes
users.edit_detailsEdit another user's details such as scheduleYes
users.deactivateDeactivate or remove usersYes
users.manage_permissionsManage per-user permission overridesYes
users.manage_ssoConfigure single sign-on (SAML/OIDC) for the organizationYes
users.manage_2faConfigure per-role two-factor authentication enforcementYes
users.manage_compensationConfigure per-role commission and base compensation (Compensation feature shell)
settings.viewView organization settingsYesYesYesYesYesYes
settings.editModify organization settingsYes
settings.billingView and manage billing settings
settings.fields.manageCreate, edit, deprecate, and delete custom fields used in quotes, projects, and agreementsYes
settings.organization.manageEdit organization profile, branding, and hours (Company section).Yes
settings.licenses.manageCreate, edit, and delete contractor licenses (Company section).Yes
settings.work-types.manageCreate, edit, and delete work types (Operations section).Yes
settings.checklists.manageCreate, edit, and delete checklist templates (Operations section).Yes
settings.slas.manageCreate, edit, and delete work-type SLAs (Operations section).Yes
settings.scheduling.manageConfigure scheduling rules and guardrails (Operations section).Yes
settings.maintenance-plans.manageUmbrella permission for plans, billing, renewals, service catalog, and deliverable types (Operations section).Yes
settings.subscriptions.manageCreate, edit, and delete subscription maintenance plans (Operations section).Yes
settings.service-catalog.manageCreate, edit, and delete service offerings (Operations section).Yes
settings.deliverable-types.manageCreate, edit, and delete deliverable types (Operations section).Yes
settings.locations.manageCreate, edit, and archive company offices, warehouses, and pickup locations.Yes
settings.pickup-locations.manageCreate, edit, and delete material pickup locations (Operations section).Yes
settings.project-templates.manageCreate, edit, and delete project templates and mappings (Operations section).Yes
settings.project-automation.manageCreate, edit, and delete project automation rules (Operations section).Yes
settings.knowledge.manageUpload, edit, and delete knowledge base documents (Operations section).Yes
settings.report-types.manageCreate, edit, and delete report types (Operations section).Yes
settings.wo-report-configs.manageConfigure required reports per work type (Operations section).Yes
settings.contract-templates.manageCreate, edit, and delete customer agreement templates (Sales catalog section).Yes
settings.financing.manageConfigure financing lenders and options (Sales catalog section).Yes
settings.pricing.manageConfigure pricing adders, rules, tiers, and financing options (Sales catalog section).Yes
settings.jurisdictions.manageConfigure jurisdictions and compliance data (Company section).Yes
settings.territories.manageDraw and edit territories and territory types (Company section).Yes
settings.payment-schedules.manageCreate, edit, and delete payment schedule templates (Sales catalog section).Yes
settings.custom-record-types.manageCreate, edit, and delete custom record type schemas (Projects section).Yes
settings.email-templates.manageCreate, edit, and delete customer email templates (Communications section).Yes
settings.sms-templates.manageCreate, edit, and delete customer SMS templates (Communications section).Yes
settings.sender-identity.manageConfigure from-email, from-name, from-phone, and run domain verification (Communications section).Yes
settings.notification-rules.manageCreate, edit, and delete notification routing rules (Communications section).Yes
settings.activity-feed.manageChoose which system events appear in the in-app activity feed.Yes
settings.email-log.viewRead the organization-wide log of sent emails, including content and delivery status (Communications section).Yes
settings.integrations.viewView installed integrations and the discoverable catalog (Integrations section).YesYes
settings.integrations.manageConnect, configure, test, and disconnect third-party integrations (e.g., Salesforce, QuickBooks).Yes
settings.webhooks.manageCreate, edit, delete, and rotate secrets for outbound webhooks (Integrations section).Yes
settings.api-keys.manageCreate and revoke API keys for external tools and AI agents (Integrations section).Yes
settings.organization.exportRequest a full export of organization data (invoices, customers, projects).
settings.organization.deletePermanently delete the organization and all associated data.
settings.authentication.manageConfigure SSO provider + tenant and org-level 2FA enforcement (Security section).Yes
settings.session.manageConfigure password policy, session timeout, and remember-device rules (Security section).Yes
settings.audit-log.viewRead the organization-wide audit log with filters and row detail (Security section).Yes
settings.data-export.requestRequest full or scoped exports of organization data (Security section).Yes
settings.retention.manageConfigure per-entity data retention policy (Security section).Yes
settings.developer.manageCreate/toggle/delete organization feature flags and access developer tools. Platform-reserved, OWNER-only.
monitoring.viewView system monitoring dashboardsYesYesYesYesYesYesYes
monitoring.configureConfigure alert thresholds and notification settingsYesYes
profile.edit_ownEdit own profile informationYesYesYesYesYesYesYes
nav.dashboard.viewOpen the Dashboard area. Off = the Dashboard pages are hidden and blocked.YesYesYesYesYesYesYes
nav.sales.viewOpen the Sales area. Off = the Sales pages are hidden and blocked.YesYesYesYesYesYesYes
nav.customers.viewOpen the Customers area. Off = the Customers pages are hidden and blocked.YesYesYesYesYesYesYes
nav.projects.viewOpen the Projects area. Off = the Projects pages are hidden and blocked.YesYesYesYesYesYesYes
nav.dispatch.viewOpen the Dispatch area. Off = the Dispatch pages are hidden and blocked.YesYesYesYesYesYesYes
nav.monitoring.viewOpen the Monitoring area. Off = the Monitoring pages are hidden and blocked.YesYesYesYesYesYesYes
nav.marketplace.viewOpen the Marketplace area. Off = the Marketplace pages are hidden and blocked.YesYesYesYesYesYesYes
nav.billing.viewOpen the Billing area. Off = the Billing pages are hidden and blocked.YesYesYesYesYesYesYes
nav.settings.viewOpen the Settings area. Off = the Settings pages are hidden and blocked.Yes
project_items.view_ownView project items assigned to you (My Work sub-app)YesYesYesYesYesYesYes
project_items.view_allView all project items across the team / organizationYesYesYes
project_items.view_unassignedView project items not assigned to anyone (claim queue)YesYesYesYesYesYesYes
project_items.assign_othersAssign project items to other team membersYesYesYes
project_items.claimSelf-claim unassigned project itemsYesYesYesYesYesYesYes
project_items.deleteSoft-delete project items from a visible projectYesYes
material_reqs.createCreate material requisitions from projects and work ordersYesYesYes
material_reqs.editEdit material requisitions, including line items, receiving, and status changesYesYesYes
material_reqs.deleteCancel material requisitions and remove their project/work-order linksYesYes
material_reqs.pickupConfirm pickup of a ready material order (status and pickup notes only)YesYesYesYes
cases.view_ownView cases assigned to you or that you createdYesYesYes
cases.view_allView all cases in the organizationYesYesYes
cases.view_unassignedView cases not assigned to anyoneYesYesYes
cases.createCreate new cases from staff intakeYesYesYes
cases.editEdit existing casesYesYesYes
cases.deleteDelete case recordsYesYes
cases.reassignChange the accountable owner of an existing caseYesYes
cases.closeClose cases with a recorded resolutionYesYesYes
cases.reopen_closedTransition a CLOSED case back to OPEN (manager-only)YesYes
cases.manager_dashboard.viewAccess the /service/cases/dashboard summary pageYesYes
contracts.createCreate customer agreements and contractsYesYesYesYes
contracts.voidVoid pending customer agreements and cancel outstanding signaturesYes
contracts.reassignChange the accountable owner of an existing contractYesYesYes
invoices.reassignChange the accountable owner of an existing invoiceYesYesYes
change_orders.reassignChange the accountable owner of an existing change orderYesYesYes
financing_applications.reassignChange the accountable owner of an existing financing applicationYesYesYes
automation_rules.reassignChange the accountable owner of an existing automation ruleYes
knowledge_documents.reassignChange the accountable owner of an existing knowledge documentYes
org_api_keys.reassignChange the accountable owner of an existing API keyYes
org_webhooks.reassignChange the accountable owner of an existing webhookYes
saved_filters.reassignChange the accountable owner of an existing saved filterYes
saved_filters.manage_sharedShare saved views with the whole organization, show them in page headers, and edit or delete any shared viewYes
nav.cases.viewOpen the Cases area. Off = the Cases pages are hidden and blocked.YesYesYesYesYesYesYes
analytics.viewOpen the Analytics module (business trends and reports). Off = the Analytics pages are hidden and blocked.Yes
Was this page helpful?