Roles Management

ALI Remote · Help Center

A role is a name for a set of permissions. Instead of deciding what each person may do one by one, you write the role once and hand it to everybody who does that job.

Where roles live

Roles moved into the Team page. Open Team in the left navigation and scroll to the Roles card under the member table. Every role in your agency is a tile there, with the number of people who hold it.

The roles you start with

Every agency comes with Owner, Admin and Member. They cannot be deleted and their standing is fixed. Everything in between is a role you write yourself, such as an editor who sees every phone but never touches billing.

Creating a role

  1. Open Team and scroll to the Roles card.
  2. Click Create a role on the last tile.
  3. Give it a name and a short description, for example IG VA, Threads team or Manager.
  4. Save. The role appears as a new tile.

A new role starts with no permissions at all. You pick them next.

Choosing what a role allows

  1. Click the pencil in the corner of the role's tile.
  2. The tile turns over and shows every permission, grouped into Team, Phones, Billing and Agency.
  3. Flip a switch on or off. Every change saves as you make it.

Permissions you do not hold yourself are greyed out: nobody can give away something they do not have. A role that stands at or above your own has no pencil at all.

Close the tile when you are done, and it turns back to its front.

What the four groups cover

  • Team: invite people, remove them, and change the roles they hold.
  • Phones: see every phone, rename and file phones, top up SIMs and rotate IPs.
  • Billing: orders, plan changes, balance and invoices.
  • Agency: agency settings, analytics, API keys and automations.

A role with nothing ticked can still sign in and drive the iPhones it has been given. That is exactly what Member is.

Giving somebody a role

  1. Find the person in the member table on the same page.
  2. Click the role pill in their row.
  3. Tick every role they should hold.

Somebody can hold several roles at once, and what they may do is the sum of them. Changes take effect on their very next request, and the holder count on the tile moves with them.

Roles and iPhone access

A role decides what somebody may do, and it is not the only thing that decides which iPhones they can open. The Access column in the member table shows the result: every phone, one group, or a count of the ones assigned to them.

The See every phone permission opens the whole agency to anybody holding the role. For anything narrower, click Access on the person's row and pick the iPhones they need. See Team Management.

Best practices

  • Name a role after the job, not the person who does it today.
  • Give a role the least it needs. You can always add a permission later.
  • Keep the number of roles small. Two roles that differ by one switch are usually one role.
  • Read the holder count on each tile from time to time, so nobody keeps a role they no longer need.

A handful of well named roles is the backbone of clean access control: write them once, and the Team page stays readable as the agency grows.