Skip to main content

Roles & Permissions

Naturalead uses Role-Based Access Control (RBAC) with 5 roles and 33 permissions across 12 domains.

Roles

Permissions matrix

Dashboard

Leads

Conversations

Agent Config

Knowledge Base

Campaigns

Analytics

Integrations

A/B Testing

API Keys

Audit

Team & Account

API key scope restrictions

When creating an API key, you can only assign scopes that your role has permission for:
  • An Operator can create a key with leads:view, leads:import, campaigns:view, etc.
  • An Operator cannot create a key with integrations:edit (they don’t have that permission).
  • Only the Owner role can grant all scopes.
This prevents privilege escalation through API key creation.

Default role

New members added to an account are assigned the Owner role by default. Account owners can change member roles via Settings > Team.