Articles on: Admin & workspace

Full permissions matrix

The complete reference for who can do what in Katalyz, across both org roles (workspace-wide) and room roles (per room).


This is a reference article. For plain-language summaries, see Org roles and Room roles.


How to read this


Two layers combine to determine what a user can do:


  1. Org role — workspace-wide:
    • Admin — full access to everything; always overrides room role
    • Pro — paid seat; standard creator/seller permissions
    • Basic — free seat; view-only with light task interactions
    • Buyer — external guest; rights depend on the room role they're given
  2. Room role — set per room: Owner, Editor, Viewer


Tables below show what a Pro user can do at each room role. Differences for Admin, Basic, and Buyer are listed in the notes that follow.



Workspace & Dashboard (org role only)


Action

Admin

Pro

Basic

Buyer

View the dashboard

Create a room

View any room in the workspace

View rooms they have access to

Delete any room

Delete own rooms

Update any room

Update own rooms

Update any room's stage

Archive a room (request)



Room actions — Pro user


Room title, logo, stage


Action

Owner

Editor

Viewer

Update room stage (pipeline)

Update room title

Update room logo (prospect logo)

Update room access settings

Update room language


Room pages & parameters


Action

Owner

Editor

Viewer

View room activity / analytics

Access room parameters

Access participants page

Show / hide pages from buyers


Participants management


Action

Owner

Editor

Viewer

Invite Editor

Invite Viewer

Remove participants

Edit participants (change role, etc.)


Content — pages, sections, widgets


Action

Owner

Editor

Viewer

Edit page content (sections & widgets)

Edit steps (top-level action items)

Edit tasks inside steps

Edit content blocks attached to steps / tasks

Add or remove Steps widgets

Edit Field widget values

Update step default fields (status, due date, assignees defaults)


Task progress & assignment


Action

Anyone with access

Mark a step / task as done

Update step / task assignees


Everyone can complete steps/tasks and reassign them, including Buyers and Basic users. This is intentional — mutual action plans only work if both sides can actively manage progress.



Differences by org role


Admin — full override


Admins ignore the room-role tables above. Whatever their room role (or even no room role at all), they behave as if they were the Owner on every action.


If you want to give an Admin read-only access to a specific room, you'd need to first downgrade their org role to Pro — there's no per-room way to scope an Admin down.


Basic — view + light action-plan actions only


A Basic seat ignores the room-role tables above for almost everything. Regardless of room role, a Basic user can only:


  • View rooms they've been added to
  • Invite Viewers when they themselves are a Viewer
  • Edit tasks inside steps when they're a Viewer
  • Mark steps / tasks as done
  • Update step / task assignees


That's it. No content editing, no inviting Editors, no managing participants, no access to analytics or parameters.


Buyer — what a buyer can do


A Buyer can never be Owner of a room (the Owner must be a workspace member). Depending on the room role they're given:


As an Editor, a Buyer can:

  • View the room
  • Edit page content (sections & widgets)
  • Edit steps and tasks in the action plan
  • Edit content blocks attached to steps / tasks
  • Invite other Editors or Viewers
  • Mark steps / tasks as done and change their assignees


As a Viewer, a Buyer can:

  • View the room
  • Invite other Viewers
  • Mark steps / tasks as done and change their assignees


In all cases, a Buyer never has access to room parameters, activity / analytics, participants management, or structural settings (title, logo, stage, language, access, adding/removing Steps widgets, Field widget values).


Updated on: 18/06/2026

Was this article helpful?

Share your feedback

Cancel

Thank you!