Roles and Access
Not everyone in a factory needs the same rights. An operator wants to see dashboards; a process engineer builds connections; only a few people should be able to delete data. UpBlue arranges this with roles.
Two levels
- Tenant — your company account. It holds your users and your organisations.
- Organisation — a workspace with its own connections, tags, dashboards and alerts. Most companies have one organisation per site. Read more about organisations.
A user is created once in the tenant and can then be added to one or more organisations, with a role per organisation.
Organisation roles
| Role | Can do |
|---|---|
| Viewer | See the organisation: dashboards, tags and operations. |
| Editor | Everything a Viewer can, plus build: collectors, connections, rules, data imports and alert rules. |
| Organisation admin | Everything an Editor can, plus manage the organisation’s users and delete data. |
On top of the organisation role, each user has:
- Dashboard role — Viewer (watch dashboards) or Editor (build dashboards). A user without a dashboard role does not see dashboards.
- User can insert — allows the user to write data directly to the API. This is meant for service users, not for people. Read more about M2M authorization.
Tenant admins
A tenant admin manages the company account: creating organisations, creating users, tokens and the My UpBlue usage and billing pages. Tenant admin pages are found in the menu behind your organisation name, top right.
💡
Give people the lowest role that lets them do their work. You can always upgrade a role later — recovering from an accidental bulk delete is harder.
Last updated on