Roles and Permissions

Roles define a user’s level of responsibility. Permissions control the data and Portal features that user can access.

How to Manage User Roles and Persmissions

This guide defines how to manage roles and permissions of a TabaPay Portal user created by a Portal admin.

Before You Begin

Ensure you are an admin or manager to edit permissions of a user.

Learn how to Create and Edit Users from the portal guide.

Roles

RoleWho this role is forDescription
AdminThe primary account owner who needs access to all permissions in portal, including viewing PII and masked data.Have full access to TabaPay Portal by default. Can create and manage other Admins, Manager, and Users. An organization must always have at least one active Admin.
ManagerA trusted team lead or operations manager who needs to delegate access and help manage users without controlling the organization’s highest-level administration.Have all user-management permissions enabled by default. Can create and mange Users only.
UserAn employee or team member who needs access to specific Portal data or features to perform their job.Receives the specific data and feature permissions assigned by an Admin or authorized Manager.

How Access Works

Each user has an assigned role: Admin, Manager, or User. The role determines which permissions are granted automatically, which permissions must be assigned, and which permissions are unavailable.

  • Enabled by default: Granted automatically when the role is assigned.
  • By assignment: Not granted automatically. An Admin or authorized Manager must explicitly assign the permission.
  • Not available: Cannot be assigned to that role.

When a user’s role changes, the Portal recalculates their permissions based on the new role.

Permission categoryPermissionAdminManagerUser
DataView PII DataEnabled by defaultBy assignmentBy assignment
DataView Unmasked DataEnabled by defaultBy assignmentBy assignment
DataView Custom API FieldsEnabled by default, if applicable to the clientBy assignmentBy assignment
Insights HubView DashboardBy assignmentBy assignmentBy assignment
Overview DashboardView Transaction SummaryEnabled by defaultBy assignmentBy assignment
Report BuilderAccess Report BuilderEnabled by defaultBy assignmentBy assignment
Report BuilderExport ReportsEnabled by defaultBy assignmentBy assignment
TransactionsView Real-Time TransactionsEnabled by defaultBy assignmentBy assignment
TransactionsView Detailed TransactionsEnabled by defaultBy assignmentBy assignment
TransactionsVoid/Reverse/Refund/Delete TransactionsEnabled by defaultBy assignmentBy assignment
TransactionsView ChargebacksEnabled by defaultBy assignmentBy assignment
TransactionsManage ChargebacksEnabled by defaultBy assignmentBy assignment
TransactionsView AdjustmentsEnabled by defaultBy assignmentBy assignment
TransactionsView AVSEnabled by defaultBy assignmentBy assignment
PaymentsCreate Payment RequestsEnabled by default, if applicable to the clientBy assignmentBy assignment
BalancesView CRB Account Balances and DetailsEnabled by default, if applicable to the clientBy assignmentBy assignment
BalancesView CRB Account NumberEnabled by default, if applicable to the clientBy assignmentBy assignment
ReportingView ReportsEnabled by defaultBy assignmentBy assignment
InvoicesView InvoicesEnabled by defaultBy assignmentBy assignment
User ManagementCreate UsersEnabled by defaultEnabled by defaultNot available
User ManagementEdit UsersEnabled by defaultEnabled by defaultNot available
User ManagementDeactivate UsersEnabled by defaultEnabled by defaultNot available
User ManagementExport User ListEnabled by defaultEnabled by defaultNot available
User ManagementView User ActivityEnabled by defaultEnabled by defaultNot available
User ManagementManage Subclient UsersEnabled by defaultEnabled by default when availableNot available

Assign Permissions

  1. Log in to the TabaPay Portal
  2. On the left panel under My Organization, select Users.
  3. To find the user with permissions you want to view, use the search or filter features as shown in Manage Users.
  4. On the right side of the user row, select Actions
  5. Select Edit User.
  6. Scroll down to view the Permissions section.
  7. Check or unchek any boxes under Permissions.
  8. Review the changes.
  9. Select Save Changes.

Permission Reference

The Portal shows only permissions applicable to the selected organization and user. Some permissions are available only when your organization is configured for the related feature. Admins and authorized Managers can assign permissions to eligible users.

CategoryPermissionDescription
DataView PII DataAllows the user to view supported personally identifiable information, such as names, addresses, phone numbers, and account details.
DataView Unmasked DataAllows the user to view full values for supported fields that are masked by default.
DataView Custom API FieldsAllows the user to view custom fields sent through the Create Transaction API, when configured for the organization.
Insights HubView DashboardAllows the user to view the Insights Hub dashboard when the feature and seat access are enabled.
Overview DashboardView Transaction SummaryAllows the user to view transaction summaries, including counts, amounts, and limits for Pull and Push transactions.
Report BuilderAccess Report BuilderAllows the user to access Report Builder.
Report BuilderExport ReportsAllows the user to export reports.
TransactionsView Real-Time TransactionsAllows the user to view real-time transaction data.
TransactionsView Detailed TransactionsAllows the user to view detailed transaction information.
TransactionsSearch TransactionsAllows the user to search and filter transaction data.
TransactionsVoid/Reverse/Refund/Delete TransactionsAllows the user to perform eligible transaction actions, subject to applicable business rules.
TransactionsView ChargebacksAllows the user to view the Chargebacks table.
TransactionsSearch and Filter ChargebacksAllows the user to search and filter chargeback records.
TransactionsManage ChargebacksAllows the user to manage eligible chargeback actions.
TransactionsView AdjustmentsAllows the user to view the Adjustments table.
TransactionsSearch and Filter AdjustmentsAllows the user to search and filter adjustment records.
TransactionsView AVSAllows the user to view the AVS table.
TransactionsSearch and Filter AVSAllows the user to search and filter AVS records.
PaymentsCreate Pull/Push TransactionAllows the user to create Pull or Push transactions, when enabled for the organization.
PaymentsCreate Payment RequestAllows the user to create payment request links, when enabled for the organization.
BalancesView CRB Account Balances and DetailsAllows the user to view CRB account balances and details, when the organization has an eligible subledger account.
BalancesView CRB Account NumberAllows the user to view the full CRB account number, when the organization has an eligible subledger account.
ReportsView ReportsAllows the user to view and download reports.
InvoicesView InvoicesAllows the user to view and download invoices when invoice access is enabled for the organization.
User ManagementCreate UsersAllows the user to invite and create eligible users in the Portal.
User ManagementEdit UsersAllows the user to edit eligible users’ profile details and permissions.
User ManagementDeactivate UsersAllows the user to deactivate eligible users and remove their Portal access.
User ManagementExport User ListAllows the user to export the user list from the Users page.
User ManagementView User ActivityAllows the user to view the Activity Log in a user’s details panel.
User ManagementManage Subclient UsersAllows an eligible user to access and manage users at the subclient level when applicable.

The permission available to a user depends on the user’s role, assigned permissions, organization type, and feature configuration. Having a permission listed in this table does not by itself enable a feature for your organization.

Permission Assignment Rules

  • Admins can assign feature and data permissions to other Managers and Users.
  • Managers can assign permissions to Users only.
  • Managers do not automatically receive access to every new feature. An Admin or authorized Manager must assign additional access to them.

Least-Privilege Guidance

Assign only the data and features a user needs to perform their job. Review permissions regularly, especially after a user changes teams or responsibilities.



Did this page help you?