Keepface
Sign up

Manage permissions

Per-member overrides let you scope a Member to specific Brands and tweak per-resource permissions beyond the default role grants.

Brand scoping

A Member’s role applies to a list of Brands you specify, not the whole Company. Example, a Marketing Manager scoped to “Brand A + Brand B” can run campaigns on those two but doesn’t see Brand C at all.

Per-resource overrides

Beyond the default role grants, you can:

  • Grant a Viewer a specific campaigns.create for one Brand only
  • Revoke wallet.view from an Admin (rare, but possible for confidentiality)
  • Grant a Member audit.read so they can review their team’s activity

Where

Workspace settings → Members → [Member] → Permissions tab. Default role’s grants appear with checkboxes; toggle to override.

Audit

Every permission change writes to the audit log with who/when/what. Keeps you accountable to SOC-style reviews.

Was this article helpful?