CORE MODULE

Understanding and Configuring User Permissions

What you'll learn in this guide

How permissions work across CX Platform, who can manage them, and the steps for updating access for a single user, a batch of users, and assigning administrator roles.

Overview

Permissions decide what each person can see and do in CX Platform. They control everything from logging in, to viewing sensitive data, to editing settings that affect how your communications go out the door.

Getting permissions right matters for two reasons. The first is access — making sure your team can do their jobs without chasing someone for help. The second is protection — keeping sensitive data, restricted documents, and configuration changes in the hands of people who should have them.

This guide walks you through the different ways permissions can be assigned, the administrator roles that unlock self-service management, and a full breakdown of what each permission actually does.

Before you start
‍
You'll need at least one Tenant Administrator set up before any of this can be self-managed. If that hasn't happened yet, contact your ChandlerCX representative — they'll get the first admin in place, and from there your team can take over.

‍

The two administrator roles

Two roles control who can manage permissions in your tenant. They sit at different levels of authority, and it's worth knowing which one fits each person before you start assigning anything.

Role What they can do
Tenant Administrator Full administrative control of the tenant. Can edit tenant details, whitelist IPs for access, edit user types, and manage all users across every domain.
Tenant User Administrator Can manage users only, and only within the domains they've been allowed to edit. Users from any other domain are off-limits. They also can't grant the Tenant Administrator role to anyone else.

‍

Which one should you assign?
‍
Use Tenant Administrator for the small group running your platform. Use Tenant User Administrator for domain leads or team managers who only need to handle user access for their own part of the business.

‍

‍

Assign a Tenant Administrator

  1. Go to Tenant settings and click your tenant.
  2. Open the Users tab and find the user who needs admin privileges.
  3. Click Edit next to their name.
  4. Under Tenant Roles, tick Tenant administrator.
  5. Click Save.

That's it — the user now has full administrator access and can manage users, tenant details, IP whitelisting, and user types.

‍

Assign a Tenant User Administrator

  1. Go to Tenant settings and click your tenant.
  2. Open the Users tab, find the user, and click Edit.
  3. Under Tenant Roles, tick Tenant user administrator.
  4. In the Allowed domains list that appears, tick every domain this person should be able to manage users for.
  5. Click Save.

The user can now manage other users within their allowed domains. Anyone outside those domains stays off-limits.

‍

Edit permissions for a single user

This is the right approach when you're onboarding someone new, adjusting access for a role change, or tightening up what one person can see.

  1. In Tenant settings, click your tenant.
  2. Open the Users tab and search for the user you want to update.
  3. Click Edit next to their name.
  4. Click the Permissions tab.
  5. Tick or untick the permissions you want to change, working through each module as needed.
  6. Click Save.

You'll be taken back to the user's permissions page with the new settings applied straight away.

‍

Edit permissions for a batch of users

If you're updating the same permissions across a group of people — say, after a new module goes live or a team restructure — batch editing saves you opening each user one by one.

Before you start, it helps to know there are three ways to apply changes in bulk. They behave very differently, so pick carefully:

Mode What it does
Add Permissions Only Any permission you tick gets added to each user's existing permissions. Anything you leave unticked stays exactly as it is. Good for granting new access without disturbing what people already have.
Remove Permissions Only Any permission you tick gets removed from each user's existing permissions. Anything you leave unticked stays unchanged. Good for revoking access after a role change or module retirement.
Set User To These Permissions Each user ends up with exactly the permissions you tick — nothing more, nothing less. Anything not ticked is removed. Good for standardising access across a role, but powerful, so double-check before you save.

‍

Heads up
‍
Set User To These Permissions overwrites everything. If a user has permissions you forget to tick, they'll lose them. When in doubt, use Add Permissions Only or Remove Permissions Only instead.

‍

Run a batch update

  1. In Tenant settings, click the tenant you want to update users in.
  2. Click Edit permissions of a batch of users.
  3. Under Permissions set type, choose Add Permissions Only, Remove Permissions Only, or Set User To These Permissions.
  4. Under Select users, paste or type the email addresses of the users you want to update — one per line.
  5. Under Select permissions, expand each module by clicking the dropdown arrow and tick the permissions you want to apply.
  6. Click Update All Users.

You'll be redirected to the Users page once the update is done. The same flow works for all three modes — only the result changes.

‍

Permissions by module

Each module has its own set of permissions. Exactly which ones appear depends on what your tenant is licensed for, but here's the full picture across all modules so you know what you're ticking when you see it.
‍

Good to know
‍
Personally Identifiable Information (PII) covers things like names, addresses, dates of birth, and government IDs. Permissions that grant access to PII or restricted documents should be assigned carefully.

‍

SFTP Server

Permission What it does
Login via SFTP Lets the user log in directly through Secure File Transfer Protocol (SFTP) for secure file transfers.
Login Web interface access — more restricted than SFTP.

‍

Send Module

Permission What it does
Login Basic user access to the Send module.
Add Single Lets the user add one recipient or entity to the messaging database.
View PII Data Lets the user see sensitive recipient details. Worth controlling tightly.
View Restricted Documents Lets the user access documents subject to additional legal or security restrictions.
System Admin Master access for the platform.

‍

Receive Module

Permission What it does
Login Opens the Receive module dashboard.
Edit Forms Lets the user create and update digital forms for inbound communication.
Edit Settings Lets the user change how forms function or how data is received.
Update Responses Lets the user edit or append to user-submitted data.
View Redacted Lets the user see data that's been anonymised for privacy.
View Responses Read access for all form submissions.
System Admin Highest privilege — controls all module actions and users.

‍

Generate Module

Permission What it does
Login Access to the Generate UI and management features.
Edit Applications Lets the user change application-specific settings, templates, or data feeds.
System Admin Unrestricted access to edit, manage, and authorise users.

‍

Chandler Verify

Permission What it does
Login Dashboard access for administration and reporting.
Approve Watchlist Manages the watchlist. Important for risk, fraud, and compliance workflows.
Edit Customers Lets the user modify customer profiles.
Edit Settings Lets the user change global or module-specific configurations.
Perform Verification Initiates and completes identity or compliance verifications — key for regulatory checks.
View Customers Read-only access to customer records.
View PII Lets the user view Personally Identifiable Information such as names, addresses, or government IDs.
View Verification History Lets the user review, audit, and track completed verification events for compliance audits.
System Admin Full administrative authority, including adding or removing users and changing permission structures.

‍

Supermatch

Permission What it does
Login Access to the Supermatch dashboard and features.
Add Member Lets the user add a Supermatch member, used in financial and superannuation workflows.
Edit Config Settings Lets the user change system, integration, or business logic configurations.
Edit Content Lets the user update content visible within Supermatch.
Search ATO and Rollover Lets the user search systems for data from the Australian Taxation Office (ATO) or process rollovers for superannuation funds.
View Member History Lets the user review changes, actions, and history for individual members.
System Admin Full control for configuration, integrations, and staff permissions.

‍

Send permissions by Application Category

The Send module takes things one step further with Role-Based Access Control (RBAC). Every Application in Send belongs to a Category, and permissions can be assigned per Category to different roles. That way you can give the marketing team full access to newsletters without ever letting them near customer statements.

Here's an example of how Applications might be grouped into Categories:

Category Applications
Statements Monthly statements, Annual statements, Daily letters
Letters Welcome letter, Overdraft letter
Marketing Monthly newsletters, Ad hoc campaigns
One-time pins Website OTP, Mobile OTP

‍

The permissions available per Category

Permission What it does
Search Lets the user search for documents using the Search menu.
View Documents Lets the user view documents found in a search or within a List.
View Restricted Lets the user view restricted documents found in a search or within a List.
Upload Document Lets the user create and upload individual ad hoc documents via Upload document.
Upload Batch Lets the user upload batch data via Upload batch, typically for singular, larger email or SMS campaigns.
Edit Application Settings Basic Lets the user view and edit the Details tab in Application settings only.
Edit Application Settings Advanced Lets the user view and edit all Application settings except Fields and Templates. This permission also controls whether Auto Send can be turned on or off.
Edit Application Templates Basic Lets the user view and edit templates only.
Edit Application Templates Advanced Lets the user view and edit all template settings.
Create Application Lets the user create a new Application in Send.
Edit Application Fields Basic Lets the user view and edit the field name, type, and source data field only.
Edit Application Fields Advanced Lets the user view and edit all field settings.
Publish Template Lets the user publish a template as the current version in an Application.
Manage Lists Enables the Manage dropdown in a List, so the user can view logs, send, delete, or pause a List send that's in Validated status.
Manage Documents Lets the user send or delete an individual document.
Send Copy Lets the user send a copy of an email or SMS document to another recipient.

‍

About restricted documents
‍
Restricted documents are documents within an Application that only certain users can view. A common example — contact centre staff can view all standard customer monthly statements, but are blocked from viewing the CEO's or Directors' statements. Only the Contact Centre Manager has permission to view those. The is restricted flag is assigned to a field during Application setup, and once applied it covers every document in that Application.

‍

Example: how Categories shape real-world access

User role Typical permissions
Marketing user Search and view Marketing newsletters only. No access to Statements or One-Time-Pins.
Contact centre Search and view Statements and Marketing letters, but no view of restricted Statements. Can search One-Time-Pins to verify a customer received them, but can't view the content for security reasons.
Contact centre manager Same as contact centre, plus the ability to view restricted Statements.

‍

Where to set Category permissions

  1. In the Send module, go to Edit Settings.
  2. Open the Categories section.
  3. Click Edit next to the Category you want to update.
  4. Tick the permissions you want to grant to each role group, then save your changes.

‍

User Types

User Types are labels that describe what kind of user someone is — Admin, Operations, Contact Centre, and so on. They don't grant permissions on their own, but they're a handy way to group people by function and they show up across reporting and user management.

Every tenant starts with three defaults: Admin, Operations, and Contact Centre. You can add your own types, reorder them, or remove ones you don't need.

Add a new User Type

  1. In Tenant settings, click your tenant and open the User Types tab.
  2. Click in the blank Type Name field at the top of the list.
  3. Enter a name and a short description.
  4. Click Add.

A confirmation message appears, and the new type shows up at the bottom of the list.

‍

Reorder User Types

  1. On the User Types tab, click the drag icon to the left of the order number for the type you want to move.
  2. Hold and drag it up or down to its new position.

A message confirms the move, and the new order is saved automatically.

‍

Delete a User Type

  1. Find the type you want to remove and click Delete.
  2. In the confirmation prompt, click Delete again.
    ‍
Heads up
‍
Deleting a User Type can't be undone. Check that no active users are assigned to it before you remove it.

‍

What's next

Once your administrator roles are sorted and you're comfortable with how permissions are structured, you can move on to fine-tuning Category permissions in Send, setting up User Types that match how your teams are organised, or onboarding new users into the right access groups from day one.