Permissions and account types

How an account type decides what an account can reach, and how to change it.

Main account only

Every account has an account type, and the type carries a set of permissions. Per-account changes layer on top of those defaults.

The built-in types

  • Client: Website Manager only, for their own site. The default for new accounts.
  • Staff: the Sales Dashboard — Overview, Contacts, Leads, Clients, Pipeline and Activity Log.
  • Administrator: everything.

Two different gates

Reaching a feature needs both halves, and they fail for different reasons:

  • A permission is about the person. Your account either holds it or it does not.
  • An entitlement is about the workspace. Live Chat comes with Premium; Lead Gen is sold separately.

So a colleague can hold every chat permission and still see no chat, because the workspace is on Starter. Upgrading the plan turns it on for everyone who already has the permission.

What can be granted

GroupCoversNeeds
Sales DashboardThe tabs, leads, clients, pipeline, payments, contact notes.Any plan
Live ChatReading conversations, sending messages, managing send-from addresses.Premium
Website ManagerWhat a client sees about their own site.Any plan
Lead GenerationProspect discovery and the sales queue.Add-on

Contact notes sit in the Sales Dashboard group on purpose: notes are not a Premium feature, and every plan can read and write them.

Changing what someone can reach

Open Accounts in the Sales Dashboard. Accounts shows each sub-account and its effective permissions; Account types edits the defaults; Defaults for new accounts sets what a newly created account gets.

A sub-account can never be granted more than the main account holds.

Hiding a tab is presentation. The real boundary is enforced on the server, so removing a permission genuinely removes access; it does not merely hide the button.

Still stuck? Tell us what you were trying to do and we'll help.

Contact support