Team Roles, RBAC & Security Posture
Enterprise deployments support fine-grained Role-Based Access Control (RBAC) to ensure principle-of-least-privilege across engineering and legal teams.
Role Permissions Matrixโ
| Permission | Owner / Admin | Compliance Officer | Developer | Viewer |
|---|---|---|---|---|
| Manage Billing & Plans | โ | โ | โ | โ |
| Modify Geo-Rules & Blocking | โ | โ | โ | โ |
| Export Legal Audit Proofs | โ | โ | โ | โ |
| Generate API Keys & Webhooks | โ | โ | โ | โ |
| Read-Only Telemetry Access | โ | โ | โ | โ |
Security & Access Controlsโ
- Mandatory 2FA: Require TOTP two-factor authentication for all workspace members.
- SAML / Okta SSO: Enterprise single sign-on integration for centralized identity governance.
- Admin Audit Trail: Every configuration change, rule modification, and proof export is logged with operator identity and IP address.