Account & Security

Members and roles

The three roles in a LevelFour organization, what each one can do, and how an admin changes a role or removes someone.

Everyone in your LevelFour organization holds one of three roles. The role decides what they can change. Everyone can read everything.

Roles

RoleWhat it adds
ViewerReads every board, cost page, saving, commitment and statement. Changes nothing.
MemberEverything a viewer can do, plus accepting and rejecting savings, commenting on them, requesting a rollout, and editing boards, tags and anomaly statuses.
AdminEverything a member can do, plus approving a rollout someone else requested, and managing members, API keys, integrations and billing.

A rollout that a member requests waits for an admin to approve it, so no single member can apply a change to your cloud account alone. Approvals and rollout walks through that flow.

The dashboard hides or disables the controls a role cannot use, and LevelFour enforces the same rules on every request, so a hidden button is never the only thing standing in the way.

See who has access

In the dashboard sidebar, open Settings, then Members. The Users & Access page lists everyone in the organization with their role, their last activity and the date they joined.

Search by name, or narrow the list with Filter by role.

Change a role

Open the member's row

On Settings > Members, find the person. Only an admin sees the role control and the row actions.

Pick the new role

Choose Admin, Member or Viewer from the role control on their row.

Confirm

The dialog names the old and new role. Click Change role. The new access applies right away.

Remove a member

Open the row's actions and click Remove member, then confirm. The person loses access right away.

Limits on role changes

  • You cannot change your own role or remove yourself. Ask another admin.
  • The last admin cannot be demoted or removed. Make someone else an admin first.

Adding people

The dashboard does not send invitations yet. To add someone to your organization, talk to your LevelFour contact. If your organization signs in through your own identity provider, Enterprise SSO covers how that works.

Next

On this page

Ask the FinOps Agent about your cloud spend