Permissions and access control
Permissions Overview
Section titled “Permissions Overview”EVAL uses role-based access control to match user capabilities to job responsibilities. You assign roles at both the account level and the evaluation level, giving you granular control over what each user can see and do.
Account Permissions
Section titled “Account Permissions”Account-level roles determine what a user can do across your entire EVAL account. The following roles are available:
Administrator
Section titled “Administrator”You have full control over the account. You manage members, configure account settings, handle billing, and access all evaluations and data within the account.
Maintenance
Section titled “Maintenance”You perform administrative tasks related to account upkeep. You manage settings and configurations but operate with a narrower scope than the Administrator role.
Member
Section titled “Member”You participate in the account as a standard user. You access evaluations and features based on additional permissions granted to you but do not manage account-level settings.
Charts Read
Section titled “Charts Read”You view patient charts and evaluation data in read-only mode. You cannot modify patient records or run new evaluations.
Charts Write
Section titled “Charts Write”You create, edit, and manage patient charts. You run evaluations and update patient records within the Charts module.
Anonymous User
Section titled “Anonymous User”You access only publicly available content. You cannot view protected data, manage settings, or interact with restricted features.
Evaluation Permissions
Section titled “Evaluation Permissions”Evaluation-level roles control what a user can do within a specific EVAL evaluation. These permissions operate independently of account-level roles.
Collaborator - Owner
Section titled “Collaborator - Owner”You have full ownership of the evaluation. You manage all aspects of it, including its settings, collaborators, and deployment. You control who else can access and modify the evaluation.
Collaborator - Can Edit
Section titled “Collaborator - Can Edit”You modify the evaluation’s content, structure, and configuration. You build and update evaluation flows, but you do not manage collaborator access or evaluation-level settings.
Collaborator - Can Use
Section titled “Collaborator - Can Use”You run and interact with the evaluation as an end user. You cannot edit the evaluation’s structure or settings, but you use it to conduct assessments and view results.
User (Cross-Account)
Section titled “User (Cross-Account)”You access the evaluation from a different EVAL account. Your permissions are scoped to usage rights granted by the evaluation owner, allowing cross-organization collaboration.
Anonymous User
Section titled “Anonymous User”You interact with the evaluation without authentication. Your access is limited to features the evaluation owner has made publicly available.
Combining Permissions
Section titled “Combining Permissions”You layer account permissions and evaluation permissions together to define each user’s complete access profile. An account-level Member, for example, might hold Collaborator - Can Edit rights on one evaluation and Collaborator - Can Use rights on another. This approach lets you tailor access precisely to each team member’s responsibilities.