Skip to main content

What Are Roles?

Roles control what members can see and do in your Velatir organisation. Every member holds one organisation role. Readers also have an access level, which says whether they see the whole organisation or selected workspaces.

Organisation Roles

Administrators handle day-to-day account management. Readers are suited for stakeholders who need visibility without the ability to make changes.

Access Level

A Reader’s access level is either Full organisation or a selection of workspaces.
  • Full organisation is the default. The Reader sees every workspace, including activity that is not assigned to any workspace.
  • Selected workspaces limits the Reader to those workspaces and any workspaces nested under them. A workspace added under a selected one later is included automatically. The Reader does not see activity that belongs to no workspace.
A workspace-scoped Reader keeps the same views. Insights, Sessions, Traces, Assessments, and Workspaces show only their workspaces, and the workspace filter offers only those. Organisation-level pages such as Members, API keys, Settings, and Data exports are hidden. Administrators always have the full organisation. Promoting a scoped Reader to Administrator clears their workspace selection.
Access level is set per member. Existing members keep full organisation access until an Administrator changes it.

Who Can Manage Keys

Both key types — ingest keys and API keys — are created and revoked under Settings → API keys by an organisation Administrator. There is no workspace-level equivalent: a Reader cannot create a key, even for a workspace they can see. An ingest key can still be scoped to a single workspace, but an organisation Administrator is the one who issues it. An API key cannot be scoped to a workspace.

Choosing the Right Roles

Reader with full organisation access. They review activity across every workspace without the ability to change anything.
Reader limited to their team’s workspace. They see their own team’s activity and nothing from other teams.
Reader with full organisation access gives them visibility across the board without any risk of accidental changes.
Create a workspace per company or administration, and give each one’s Readers access to that workspace only. Nested workspaces underneath are included.

Inviting Members

Open Member Settings

Navigate to your organisation settings and select the Members section.

Send an Invitation

Enter the new member’s email address and select their organisation role. For a Reader, choose the access level: the full organisation or selected workspaces. They receive an email invitation to join.

Adjust Later From the Member List

Change a member’s role or access level at any time from the Members page. Changes apply immediately.
For members managed by Microsoft Entra group mapping, the role comes from the security group while sync is on, but you can still set their access level. See Microsoft Entra.

Microsoft Entra

Assign organisation roles from Entra security groups.

Data Privacy

Understand how Velatir handles data privacy and access control