[New] Integrations User Roles & Permissions

Overview

TrustArc Integrations uses a role-based permission model to control what users can see and do within the workspace. Each user is assigned one of two role types — Admin or Non-Admin — which determines their level of access to recipes, connections, folders, and workspace settings.

This article provides a reference summary of all permissions associated with each role, followed by a detailed breakdown of what each role can do.

What you can do
Review the permissions available to Admin and Non-Admin roles at a glance
Understand the full capabilities of the Admin role across user management, recipe management, and governance
Understand the access limitations of Non-Admin roles and how folder permissions affect them
Permissions Summary

The table below summarizes the permissions associated with each pre-configured role in TrustArc Integrations. Use this as a quick reference when assigning roles or reviewing access.

  Admin Non-Admin
User & Role Management Yes No
Recipe Start/Stop (All) Yes Depends on specific role and folder permissions
Recipe Creation/Edit Yes Yes
Access Shared Connections Yes Depends on specific role and folder permissions
Manage Workspace Settings Yes No
View Audit Logs Yes No
Access All Folders Yes Depends on specific role and folder permissions
Admin

Admins have full control over the workspace. Their capabilities include:

User Management
Add and remove users
Assign roles and permissions
Manage team workspaces and folders
Recipe Management
Create, edit, and delete any recipe
Start, stop, or schedule any recipe
Access and manage shared folders
Connections & Accounts
Create and manage connections
View and update credentials for all connectors
Workspace Features
Use all enterprise features, including:
On-prem agents
Lookup tables
Admin API access
Custom roles and policies (if enabled)
Audit & Governance
View full activity logs
Access integration insights and usage data
Configure workspace-level settings, including environment properties and IP whitelisting
Non-Admin

Non-admins have limited access, depending on the role assigned — for example, Analyst, Operator, or Recipe Editor. Capabilities vary but typically include the following:

Recipe Interaction
View or edit only specific recipes, depending on folder permissions
May start or stop recipes they created or have been granted access to
Connections
Create or manage only their own connections
Cannot view or modify workspace-level shared connections unless permissions are explicitly granted
Limited Governance Access
Cannot access workspace settings, user management, or audit logs
Environment Access
Limited to the environments or folders they are granted access to — for example, Dev but not Prod
TrustArc  ·  TrustArc Integrations — User Roles and Permissions  ·  support.trustarc.com