Glean user roles and permissions
Cindy Chang avatar
Written by Cindy Chang
Updated over a week ago

Admin role

  1. Can create Announcements, and view, edit, and delete anyone’s Announcements

  2. Can create Answers, and view, edit, and delete anyone’s Answers

  3. Can create Collections, and view, edit, and delete anyone’s Collections

  4. Can connect/update workspace applications to Glean

  5. Can edit teammates’ permissions

  6. Can see when teammates signed up for Glean and when they last used extension

  7. Can manage general Glean settings (company name, appearance, home page customizations, default member permissions)

  8. Can create Go Links, and view, edit, and delete anyone’s Go Links

  9. Can access the Insights Dashboard

  10. Can create, edit, and delete anyone’s Pins

  11. Can verify or deprecate anyone's documents

  12. Can create, edit or delete team pages

  13. Can setup and manage Glean Assistant

  14. Can create AI Apps, and view, edit, and delete anyone's AI App

The following permissions are limited to the admin role only and cannot be additionally granted to members and setup admins:

  1. Can edit teammates’ permissions, including assigning Admin, Setup Admin and Member roles. However, they cannot assign the Super Admin role.

  2. Can see when teammates signed up for Glean and when they last used extension

  3. Can manage general Glean settings (company name, appearance, home page customizations, default member permissions)

  4. Can assign the AI App Creator role to any Member

Additionally, admins can change the set of default member permissions for creation to be on or off:

  • Can create new Answers

  • Can create new Collections

  • Can create new Go Links

  • Can create new Pins

If the default creation permissions are turned off at a later time, members will still be able to edit and delete any Answers, Collections, Go links or Pins that they had previously created.

Member role

Members have the following set of member permissions:

  • Can view, edit, and delete Answers for they are editors

  • Can view and delete anyone’s Collections and add/remove items from them

  • Can access all content that they have permission to view

  • Can edit and delete their own Go Links

  • Can view anyone’s Go Links

  • Can create private Pins, only visible to them

  • Can view anyone’s Pins for which they are in the audience

  • Can verify and deprecate their own documents

  • Can edit the team page of the team they are part of

Default creation permissions for all members can be set by admins [details]

Setup admin role

Setup admins have the same permissions as the member role plus they also can do the following:

  • Can connect and configure workspace applications in Glean

  • Can start the crawl for new workspace applications and control visibility in search for each application in Glean

Additional roles

Members and Setup Admins can be assigned additional roles by an Admin or Super Admin:

Announcements moderator role

Teammates with this role can view, edit, and delete anyone’s Announcements

Answers moderator role

Teammates with this role can view, edit, and delete anyone’s Answers

Collections moderator role

Teammates with this role can view, edit, and delete anyone’s Collections

Go Links moderator role

Teammates with this role can create, edit, and delete anyone’s Go Links.

Insights moderator role

Teammates with this role can access the Insights dashboard and download csv insights.

Pins moderator role

Teammates with this role can create, edit, and delete anyone’s Pins.

Teams moderator role

Teammates with this role can create, edit, and delete Teams.

Verification moderator role

Teammates with this role can verify and deprecate anyone’s documents

AI App Creator role

Teammates with this role can create, edit, and delete their own AI Apps. They can view others' AI Apps but cannot edit or delete them.

Super admin role

This role is separately managed from the other admin roles. To assign the first Super Admin, please work with Glean. Super admin role has all the Admin permissions plus the following:

  1. Can assign the Admin Search role

  2. Can assign the DLP moderator role

  3. Can create global scope API tokens

  4. Can assign the Super admin role and any other permission or role

Admin Search role

Permission for sensitive content search for eDiscovery can be individually granted to any role by the Super Admin role. This role has the ability to use sensitive content search plus the following:

  1. Can verify access

  2. Can hide documents

Sensitive Content (DLP) moderator role

Permission for the Sensitive content report for Data Loss Prevention can be individually granted to any role by the Super Admin role

Did this answer your question?