Skip to content

Permissions and access control

EVAL uses role-based access control to match user capabilities to job responsibilities. You assign roles at both the account level and the evaluation level, giving you granular control over what each user can see and do.

Account-level roles determine what a user can do across your entire EVAL account. The following roles are available:

You have full control over the account. You manage members, configure account settings, handle billing, and access all evaluations and data within the account.

You perform administrative tasks related to account upkeep. You manage settings and configurations but operate with a narrower scope than the Administrator role.

You participate in the account as a standard user. You access evaluations and features based on additional permissions granted to you but do not manage account-level settings.

You view patient charts and evaluation data in read-only mode. You cannot modify patient records or run new evaluations.

You create, edit, and manage patient charts. You run evaluations and update patient records within the Charts module.

You access only publicly available content. You cannot view protected data, manage settings, or interact with restricted features.

Evaluation-level roles control what a user can do within a specific EVAL evaluation. These permissions operate independently of account-level roles.

You have full ownership of the evaluation. You manage all aspects of it, including its settings, collaborators, and deployment. You control who else can access and modify the evaluation.

You modify the evaluation’s content, structure, and configuration. You build and update evaluation flows, but you do not manage collaborator access or evaluation-level settings.

You run and interact with the evaluation as an end user. You cannot edit the evaluation’s structure or settings, but you use it to conduct assessments and view results.

You access the evaluation from a different EVAL account. Your permissions are scoped to usage rights granted by the evaluation owner, allowing cross-organization collaboration.

You interact with the evaluation without authentication. Your access is limited to features the evaluation owner has made publicly available.

You layer account permissions and evaluation permissions together to define each user’s complete access profile. An account-level Member, for example, might hold Collaborator - Can Edit rights on one evaluation and Collaborator - Can Use rights on another. This approach lets you tailor access precisely to each team member’s responsibilities.