OffZio
Network Admin Dashboard

Roles & Permissions Settings

Roles & Permissions define what internal staff can do in OffZio. A role is a named set of checks (create advertisers, see payout, generate invoices, and so on). You assign that role to people on Team Members.


This is not for publisher or advertiser accounts. Partners use their own logins. Staff use Super Admin, Admin, Manager, or a custom role you create here.


Roles vs team members


  1. Role — The permission bundle (name, level, visibility, and checkboxes).
  2. Team member — The person. You pick their role on the Team Members form.


Change permissions on the role; they apply to everyone who has that role. Add or suspend people on Team Members Settings. This article does not document Teammate Portal.


Who can manage roles


Only a Super Admin or Network Admin with Settings access should create or edit roles. Confirm your role on the sidebar profile card if you are unsure.


Note: Do not strip Super Admin from the last person who can open Settings. You can lock your team out of this page.


How to open Roles & Permissions


  1. Sign in as a Super Admin or Network Admin.
  2. In the left sidebar, click Settings.
  3. Under Team & Access, click Roles & Permissions.


The title is Roles & Permissions. The subtitle reads: Manage roles and their permissions.


How to read the list


The toolbar includes Search roles..., a count such as 3 roles total, and + Add Role.


Each row is one role:

  1. Checkbox — Select rows when your workflow uses bulk actions.
  2. Role Name
  3. Description
  4. Type — For example default for platform roles.
  5. Permission Level — For example admin or manager.
  6. Status — For example active.
  7. Permissions — How many checks are granted.
  8. Users — How many teammates currently have this role.


Opening a role uses the Edit Role form. This article does not invent a three-dot menu beyond that.


Default roles


OffZio typically ships these platform defaults. Counts below are illustrations from a sample network — your Users and Permissions numbers will differ.


  1. Super Admin — Full access to all features and settings. Type default, level admin, active. Example: 40 permissions, 1 user.
  2. Admin — Has access to all the sections and features. Type default, level admin, active. Example: 40 permissions, 0 users.
  3. Manager — Manages both publishers and advertisers-related information. Has no access to Settings. Type default, level manager, active. Example: 0 permissions, 1 user.


Note: The Manager description says no Settings access. If Manager shows 0 permissions, that person cannot do useful work until you Edit Role and grant the checks they need (list publishers, list campaigns, and so on). Review Manager permissions before you assign people.


Status, Permission Level, and User Visibility


Status

  1. Active — The role can be assigned and used.
  2. Inactive — The role is not available for normal use.


Do not confuse Status with User Visibility. “Assigned Users Only” is not a status value.


Permission Level

  1. Admin — Broad admin-class role (matches the admin badge on the list)
  2. Manager — Manager-class role (matches the manager badge). Create form may default to Manager.


Level is the role’s category. The checkboxes below decide the actual screens they can open.


User Visibility

  1. All Users — The teammate can see all partners and users in scope.
  2. Assigned Users Only — The teammate only sees partners assigned to them. Assign people with Assign to Team Member on advertiser and publisher forms.


Tip: Use Assigned Users Only for account managers who should not see the whole book. Use All Users for Super Admin and network-wide ops.


Create New Role


Click + Add Role. Title: Create New Role. Subtitle: Add a new role with specific permissions.


  1. Role Name — Placeholder: e.g., Marketing Manager.
  2. Description — Brief description of this role.
  3. Status — Default Active. Options: Active, Inactive.
  4. Permission Level — Admin or Manager.
  5. User Visibility — All Users, or Assigned Users Only.
  6. Permissions — Same category list as Edit Role.


Buttons: Cancel and Create Role.


Edit Role


Title: Edit Role. Subtitle: Update role details and permissions. The fields match Create.


For illustration, Super Admin may show description Full access to all features and settings, Status Active, Permission Level Admin, User Visibility All Users. The Permissions header shows a selected count (for example 40 selected).


Buttons: Cancel and Update Role.


Note: If the header says 40 selected but expanded groups show 0/x, do not trust the header count. Expand every group and verify the checkboxes before you save.


Permission groups


Permissions are grouped. You can expand or collapse a category. A category checkbox selects the whole group. Each group shows a fraction (selected / total).


General (3)

  1. Can see Payout
  2. Can see Revenue
  3. Can see Sale Amount


Advertiser (4)

  1. Create — Can Add New Advertiser
  2. List — Can Access Advertisers
  3. Edit & Delete — Can edit, delete Advertisers
  4. Export — Can Export Advertisers


Publisher (5)

  1. Create
  2. List
  3. Edit & Delete
  4. Postbacks — Can add, edit, delete Postbacks
  5. Export


Campaign (7)

  1. Create
  2. List
  3. Edit & Delete
  4. Requests — Can manage Campaign Requests
  5. Manage Custom Parameters
  6. Manage Custom Access
  7. Export


Smartlink (4)

  1. Create
  2. List
  3. Edit & Delete
  4. Export


News (2)

  1. Publish For Publisher
  2. Publish For Advertiser


Activity Log (1)

  1. Can access Activity Log


Advertiser Billing (3)

  1. Can access Advertiser Billing
  2. Can access Advertiser Invoices
  3. Can generate, edit, delete Advertiser Invoices


Publisher Billing (4)

  1. Can access Publisher Billing
  2. Can add, edit, delete Publisher Billing & Payment Method
  3. Can access Publisher Invoices
  4. Can generate, edit, delete Publisher Invoices


Reports (7)

  1. Can access Reports
  2. Can see Referral Reports
  3. Can export Reports
  4. Delete Conversions — Can delete Conversions
  5. Can see Pending conversions
  6. Can see Rejected conversions
  7. Can see Trash conversions


Note: Delete Conversions is destructive. Do not grant it unless the teammate is trusted. Prefer “see Pending / Rejected” without delete for most managers.


Common tasks


Create a custom manager role


  1. Open Settings → Team & Access → Roles & Permissions.
  2. Click + Add Role.
  3. Enter a Role Name (for example Marketing Manager) and a short Description.
  4. Leave Status Active.
  5. Set Permission Level to Manager.
  6. Set User Visibility to Assigned Users Only if they should only see their book.
  7. Expand each permission group. Grant List (and Create/Edit only if needed). Leave Settings-style access off.
  8. Expand Reports and grant access without Delete Conversions unless required.
  9. Click Create Role.
  10. On Team Members, assign this role to the person.


Restrict reports on an existing role

  1. Open the role in Edit Role.
  2. Expand Reports.
  3. Turn off Delete Conversions and any report types they should not see.
  4. Confirm other groups still match your intent (header count vs 0/x).
  5. Click Update Role.


Assign the role on Team Members

  1. Open Settings → Team & Access → Team Members.
  2. Add or edit the staff account.
  3. Choose the role in Role.
  4. Save. Use Login As to confirm what they can see.


Best practices


  1. Give the least privilege that still lets the person do the job.
  2. Do not remove Super Admin from the last admin who can open Settings.
  3. Use Assigned Users Only for account managers; assign partners with Assign to Team Member.
  4. Review the default Manager role if it shows 0 permissions before you hire against it.
  5. Expand every permission group before Update Role if the selected count looks wrong.
  6. Keep Delete Conversions and invoice delete rights on a very small set of people.