Knowledge Base / Roles & Permissions
Getting Started

Roles & Permissions

VibeOps has four user roles. Each role builds on the previous one — every role can do everything the role below it can, plus more. Use the tabs below to jump to your role, or scan the table to compare permissions at a glance.

Quick reference
Feature
View assigned projects & tasks
View all projects (read)
Log & submit own time
Log time for teammates
Create & edit tasks
Delete boards
Approve / reject timesheets
Unlock approved timesheets
Reports screen
Rate cards / budgets / invoices
Create / edit / delete projects
Invite & manage users
Integrations & SSO
Admin panel

Click a role name in the table header to highlight that column and jump to its detail section below.


Project membership

Regardless of role, access to specific project content is also controlled by project membership. To work inside a project you must be added to it by an admin.

Can see projectCan edit project content
AdminAlwaysAlways
ManagerAlwaysOnly if project member
Member / ViewerOnly if project memberOnly if project member

Role
Viewer

Read-only participant. Can browse assigned projects, boards, tasks, and comments. Cannot create, edit, or submit anything.

Use case: External stakeholders, clients, or contractors who need visibility without making changes.

Can do
Browse projects, boards, tasks, and comments they have been added to
View their own timesheet history
View their own profile and preferences
Cannot do
Log time
Create or edit tasks
Submit timesheets
See other people's timesheets
Access Reports screen
FAQ

Role
Member

Standard role for individual contributors.

Use case: Developers, designers, and other team members doing day-to-day work.

Can do
Log, edit, and delete own time entries
Submit, recall, and resubmit own timesheets
Create, update, and delete own tasks
Create and update boards (cannot delete)
Participate in sprint planning
Add comments and attachments to tasks
Use AI features: time suggestions, standup summaries, task generation
Connect calendar (Google / Outlook)
Cannot do
View or edit other people's timesheets or time logs
Approve, reject, or unlock timesheets
Access Reports screen
Create or delete projects
Invite users or change roles
Log time for teammates
FAQ

Role
Manager

Role for team leads and approvers. Full visibility and control over timesheets across the entire workspace.

Use case: Team leads and project managers responsible for reviewing and approving team timesheets.

Can do
View all timesheets across the workspace
Approve, reject, and unlock timesheets (single and batch)
Create timelogs for any team member
List all users' timelogs
Send team submission reminders
View all projects (read) even without project membership
Delete boards; complete and close sprints
Configure approval chains and delegation (People screen)
Manage client portal access
Access the Reports screen
Create and edit rate cards, budgets, and invoices
Manage report schedules; generate evidence packs (plan-dependent)
Cannot do
Create, edit, or delete projects (tenant-level)
Access the Admin panel
Invite users or change roles
Configure integrations, SSO, API keys, or webhooks
Manage workspace-wide settings or compliance exports
FAQ

Role
Admin

Full workspace administrator. Has every Manager capability plus control over users, projects, integrations, and workspace configuration.

Use case: Workspace owners, IT admins, and operations leads responsible for onboarding, security, and billing.

Can do
Everything a Manager can do, plus:
Create, edit, and delete projects
Invite, suspend, activate, and remove users; change roles
Access the Admin panel: users, workspace, clients, audit log, API keys, webhooks, SSO, compliance, backups
Configure integrations (Jira, Tempo, GitHub, Slack, Teams, calendar, Azure AD, and more)
Manage activity types, custom fields, and AI workspace config
Manage billing, subscription, and usage metering
Import timelogs via CSV
Cannot do
Bypass approved timesheet locks without using unlock or recall workflows
Access other tenants' data (multi-tenant isolation is always enforced)
FAQ

How to request a role change
Contact your workspace admin. Only admins can change user roles. If you are unsure who your admin is, ask your manager or check with your organisation's IT contact.