Skip to content

Set permissions and resource access

Permissions decide what a Custom member can do. Resource access decides where those permissions apply. Use both together to give the smallest practical level of access.

Permissions are grouped by product area. Depending on the module, you can grant separate abilities to view, create or edit, delete, export, or manage special actions.

The groups cover:

  • Dashboard and Contacts;
  • Inbox, Tasks, Calendar, and Chat;
  • Workforce Chat and Channels;
  • Forms and Integrations;
  • Assistants, Knowledge Bases, and Website Crawlers;
  • Analytics and Audit Log;
  • workspace administration.

Selecting a view permission does not automatically grant editing or deletion. Review every group before saving.

Enable Limit to selected resources to choose the exact items the member can use. You can select:

  • channel groups and individual channels;
  • Forms and Integrations;
  • Assistants;
  • Knowledge Bases;
  • Website Crawlers.

The selectable list only contains resources that belong to the current workspace. If a selected resource is later deleted, it naturally disappears from the member’s usable scope.

Resource limits also affect related data. For example, Inbox and Contacts only expose information connected to channels the member can access.

Guest access is always limited to selected resources. Doublewire prevents Guest permissions that would expose workspace-wide or private team data, including:

  • member Chat;
  • the workspace Audit Log;
  • workspace and member management;
  • calendar sharing management;
  • workspace-wide exports and administrative tools.

These safeguards remain in effect even if an older or invalid permission selection is submitted.

A Team member may also be limited to selected resources. Workspace-wide views that cannot be represented safely as a partial view, such as Audit Log and calendar sharing management, are unavailable while that restriction is on.

Before saving, confirm all three questions:

  1. Does the person have the correct access type?
  2. Do their permissions allow only the actions they need?
  3. If resource limits are enabled, are all required resources selected?