Guides
HomeHomeLog In
Guides

Cyolo Administrative and Supervision Roles

Overview

Cyolo includes three categories of roles:

  1. Admin roles
  2. Supervision roles
  3. Auditor roles

The Admin Portal displays pages and data based on a user's assigned role.

Admin Roles

Super Admin

  • R/W access to all components.
  • Full administrative control and the ability to assign roles.

Operational Admin

  • R/W access to most components except admin roles and integrations.
  • Manages daily operational tasks.

Read Only Admin

  • Read-only access to most components.
  • Intended for audit and review.

Help Desk

  • R/W access to identities.
  • R access to sessions and selected components.
  • Supports identity and session troubleshooting.

Logs Viewer

  • R access to logs only.

Access Manager

  • R/W access to vault, sessions, logs, and applications.
  • Manages controlled access flows.

Supervision Roles

Supervision roles support controlled access when user activity must be monitored or reviewed.

Approver

Approves or denies access requests. Can terminate sessions.

Active Supervisor

Can join ongoing sessions, view user screens, interact, and terminate sessions.

Observer Supervisor

Can join ongoing sessions in view-only mode and terminate sessions.

Auditor Role

Auditor

Can replay session recordings. Does not have access to live sessions. Session replay is not supported for web applications or SSH tunnel applications.


📘

See also:

RBAC Permissions in Cyolo

Assigning Identities, Supervision, and Rules to Applications