Access Control

Role-Based Access Control

Control who can do what in your organization. Define roles, assign permissions, and make sure the right people have the right access.

Enterprise RBAC Features

Everything you need for comprehensive access management.

Fine-Grained Permissions

Control access at resource, action, and field level granularity.

Team Management

Organize users into teams and departments with inherited permissions.

Resource Scoping

Scope permissions to specific projects, folders, or workspaces.

Audit Trail

Track who did what and when, with complete permission change logs.

Role Inheritance

Create hierarchical roles that inherit from parent roles.

Least Privilege

Follow security best practices with minimal required permissions.

Pre-Built Roles

Get started quickly with a set of carefully designed default roles, or build your own role with exactly the permissions you need.

  • Owner: full access to all resources and settings
  • Admin: manage team, integrations, and billing
  • Developer: create and edit workflows, agents, and connections
  • Analyst: view workflows, run reports, and access logs
  • Viewer: read-only access to workflows and data
  • Custom: build your own role with specific permissions

Granular Permissions

Control access at every level with detailed permission settings across each part of the platform. Grant precisely the actions each role needs and nothing more.

  • Workflows: view, create, edit, delete, execute
  • Agents: view, create, edit, delete, chat
  • Connectors: view, install, configure, uninstall
  • Team: view, invite, remove, edit roles
  • Billing: view, update plan, manage payment
  • Settings: view, edit, delete organization

Built for Enterprise Teams

Whether you are a small team or a large enterprise, RBAC helps you manage access efficiently and securely as you grow.

  • Multi-department access: different teams, different permissions
  • Contractor access: limited, time-bound permissions for external users
  • Compliance requirements: helps you meet your SOC 2 and GDPR access controls
  • Separation of duties: enforce security best practices

API Access Control

RBAC extends to API access. Create scoped API keys with specific permissions so each integration only gets the access it needs, from full-access production keys to read-only analytics keys.

  • Scoped keys for production, CI/CD, and analytics
  • Full access, workflows-only, or read-only scopes
  • Per-key creation and revocation
  • Same permission model as users and roles

Access Control at Enterprise Scale

0
Pre-Built Roles
0
Permission Categories
0%
Changes Logged
0%
Audit Trail Coverage

Frequently Asked Questions

What roles does Lither include out of the box?

Lither ships with six pre-built roles: Owner, Admin, Developer, Analyst, and Viewer, plus a Custom role you can configure with exactly the permissions you need. You can start with the defaults and adjust as your team grows.

How granular are the permissions?

Permissions are controlled at the resource, action, and field level. Each category, including Workflows, Agents, Connectors, Team, Billing, and Settings, has its own set of actions such as view, create, edit, delete, and execute, so you grant exactly what each role needs and nothing more.

Can I scope access to specific projects or workspaces?

Yes. You can scope permissions to specific projects, folders, or workspaces, and organize users into teams and departments that inherit permissions. Roles can also inherit from parent roles for clean hierarchies.

Does RBAC apply to API keys?

Yes. RBAC extends to API access. You can create scoped API keys with specific permissions, for example a full-access production key, a workflows-only key for CI/CD, and a read-only key for an analytics dashboard.

Which plans include RBAC?

RBAC is available on the Pro and Enterprise plans and helps you meet your SOC 2 and GDPR access-control requirements with a complete audit trail of every permission change.

Secure Your Automation Platform

RBAC is available on Pro and Enterprise plans. Start managing access today.