Workspace / Settings
Roles & permissions
Static theme preview
A small role model for project work, independent review, and workspace ownership.
Workspace role, project scope
Owners manage the workspace. Reviewers, contributors, and viewers only see their assigned projects. A contributor can prepare work but cannot approve it under this example policy.
| Capability | Owner | Reviewer | Contributor | Viewer |
|---|---|---|---|---|
| View projects and run evidence | All projects | Assigned | Assigned | Assigned |
| Create work items and start runs | Yes | No | Assigned | No |
| Record review decisions | Yes | Assigned | No | No |
| Manage team and invitations | Yes | No | No | No |
| Change integration and policy settings | Yes | No | No | No |
Assigned = assigned projects only. On smaller screens, scroll the comparison horizontally.
Implementation boundaries
- This theme renders permissions; your backend must authenticate users and enforce authorization on every request.
- Invitations do not grant access until accepted and validated by your application.
- Review approval is separate from merge and deployment permission. Neither is performed by this preview.