Feature · Workspace Roles & Permissions

工作区角色与权限

工作区角色让团队访问权限在 AmICited 中清晰可见。所有者、管理员、编辑者、成员、访客和维护者并非等级划分:每项功能都声明其允许的操作,尤其是在写入操作会更改源映射、索引或成本时。

app.amicited.com/settings/workspace
Workspace roles
Owners / admins / editors Broad action access
Members Read by default
Guests Often no AmICited surface
Maintainers Feature-specific read
Permission is evaluated per resource; a role label alone is not a promise of the same access everywhere.
Role baseline
Owner Full access
Admin Full access
Editor Full access
Member / Guest / Maintainer Read by default
Feature matrices can narrow this baseline, particularly for guest and maintainer access.
Default access is only the start

工作区角色权限

通用基线赋予所有者、管理员和编辑者完整操作权限,而成员、访客和维护者默认仅有读取权限。但 AmICited 的功能权限矩阵更为严格:例如,域名管理排除访客和维护者,而平台连接允许编辑者查看但仅限所有者和管理员进行更改。

  • 不要因为成员可以查看报告就默认其拥有编辑权限。
  • 不要认为维护者等同于编辑者;访问权限因功能而异。
  • 即使其他资源的默认设置允许读取,访客在多个 AmICited 界面中仍被排除在外。
Writes deserve explicit authority

报告与数据源权限

报告的受众通常比配置更广泛。付费 PPC 报告对允许的角色为只读;平台连接和源映射有其独立的管理边界;Search Console 的操作则单独授权。这避免了读者意外获得更改外部系统的权限。

Examples
Domains Owner / Admin / Editor manage
Connections Owner / Admin manage
GSC writes Owner / Admin / Editor
PPC reports Read-only roles
Google Search Console update actions and connection changes are intentionally different permission decisions.
Team operations
Membership Add / update / remove
Ownership Transfer by owner
Old owner Becomes admin
Plan gates Apply separately
Changing a role does not override subscription limits, SSO configuration eligibility or provider authorization.
Workspace administration

工作区成员管理

所有者和管理员可以管理工作区成员;所有权转移仅限于所有者或超级管理员,原所有者将降为管理员。角色权限和订阅限制仍是独立检查的,因此高级角色不会自动解锁不可用的功能。

6工作区角色标签的具体含义取决于其所作用的功能See Enterprise SSO

赋予团队可见性,同时避免意外授予写入权限

使用资源感知型访问控制,让报告的共享范围比外部源配置更广泛。

app.amicited.com/settings/workspace

准备好让工作区访问权限匹配每位团队成员的实际工作内容了吗?

Free check · 7-day trial · no credit card