Roles at a glance
App access is set on Users. Labels match the Users screen.
| Role (Users label) | Scope | Can do |
|---|---|---|
| Owner (full access, including billing) | Whole workspace | Everything, including billing and Delete workspace |
| Admin (full access except billing) | Whole workspace | Everything except billing and deleting the workspace |
| Location Manager (assigned sites) | Assigned locations / groups | Site details, kiosks, visits, overrides. Cannot create or delete locations or manage users |
| Reception (front desk at locations) | Assigned locations / groups | Check-ins, visitor log, kiosk pair / re-pair and health for their sites |
| Employee (host visitors) | Host locations | Invite and manage their own hosted visits |
| Directory only (no app access) | — | Appears in host search; cannot sign in until given app access |
Host locations vs Admin locations
- Host locations: where this person can be selected as a visit host.
- Admin locations: desk / operator sites for Location Manager and Reception.
They are separate lists. See Host and Admin locations.
What each role sees
- Employee: Overview shows today's hosted visitors; no location stats widgets.
- Reception: Visits and Visitors for desk sites (plus their own hosted visits); Kiosks for troubleshooting, not full inventory control.
- Location Manager: Settings opens Overrides for assigned targets, not workspace-wide General / Flows / Policies / Languages / Branding.
- Owner only: Billing and workspace delete.