SECURITY & ACCESS
Understand roles and permissions
Learn how platform, organization, workspace, and project access work together.
Learn how platform, organization, workspace, and project access work together. This guide is written for security-conscious users and organization owners and explains both the recommended workflow and the checks to make when the result is not what you expect.
Before you begin
- Sign in to RIIW with the account you intend to use for this work.
- Confirm the active organization in the organization switcher. RIIW keeps each organization’s members, settings, and work separate.
- Make sure your role includes the capability required for the action. If a control is missing rather than disabled, access is the most likely reason.
- Save any unsent text before changing browser, organization, or workspace context.
Tip: Use the narrowest access that lets a teammate complete their work. Clear ownership and intentional permissions make later troubleshooting much easier.
Understand roles and permissions: step by step
- Open RIIW and go to Account settings → Security, or the organization activity area named by the guide.
- For understand roles and permissions, first confirm the actor, affected scope, and security consequence. This prevents a valid action from being applied in the wrong scope.
- Follow the control named in the page heading or action menu. Learn how platform, organization, workspace, and project access work together. If the control is not visible, stop and check access instead of choosing a similar action elsewhere.
- Enter the required values and add enough context for a teammate to understand the change. Keep names concise; put rationale and acceptance details in description fields.
- Review visibility, ownership, dates, and linked items before saving. RIIW validates required fields and permission boundaries during this step.
- Submit once and wait for the success state. A button can remain busy while RIIW validates access, storage, or a concurrent update.
- Confirm that the new security state is visible and any superseded session or challenge no longer works.
Recommended practices
Keep context explicit
Use descriptions and comments to capture the reason for a decision, not only the result. Link related project work or supporting documents when a future reader would otherwise need to search for them.
Choose a consistent owner
Assign one accountable owner whenever the workflow supports ownership. Other contributors can still collaborate, but a single owner reduces ambiguity and makes notifications actionable.
Review access after structural changes
Moving work, changing an organization role, or connecting a project can alter who is able to see or update an item. Verify access with the affected teammate instead of assuming inherited permissions are unchanged.
What different people can do
| Person | Typical access |
|---|---|
| Organization owner or admin | Configure organization-level behavior and manage members when their role permits it. |
| Workspace or project lead | Structure team work and manage the items inside their assigned scope. |
| Member | View and contribute to work allowed by their effective capabilities. |
| Platform support | Investigate an authenticated support ticket; it does not silently join your organization. |
Exact controls depend on your organization role, custom capabilities, module settings, and the scope of the current item.
Troubleshooting
The control is missing or disabled
Confirm that you are in the expected organization and that the relevant module is enabled. Ask an organization owner to review your role and effective capabilities. Signing out and back in can refresh access after a recent role change.
The page shows old information
Refresh the page once. If the issue continues, close duplicate RIIW tabs, sign in again, and retry in a current browser. Avoid clearing site data until you have copied any unsaved text.
The action fails after you submit it
Read the inline error first; RIIW commonly identifies a missing field, access rule, limit, or conflicting update. Check your network connection and retry once. Repeated submits can create confusing duplicate work in workflows that are not naturally idempotent.
Get more help
Search this Help Center for the exact control or error message. For a product problem, open an authenticated RIIW support ticket and include the affected organization, module, expected result, actual result, and reproduction steps. Add a screenshot or short video only when it does not expose passwords, tokens, payment details, or unrelated personal data.