Users, Roles & Permissions

Permission reference: Settings & administration

Control who can manage system settings, users, groups, and permissions.

Jul 11, 2026

Permission Reference: Settings & Administration

This table lists all permissions that control access to system administration, configuration, and user/group management in Usystems.

PermissionWhat It ControlsAllowed Actions
settings.manageManage system settingsUsers can configure system preferences (fiscal year, company details, tax rates, currencies, business rules), and manage product-level settings.
user.viewView usersUsers can see a list of all system users and their roles.
user.manageManage usersUsers can create new user accounts, edit existing users (name, email, password), deactivate users, and assign roles.
group.viewView groups/rolesUsers can see all user groups and their members.
group.manageManage groups/rolesUsers can create new groups, assign permissions to groups, modify group memberships, and delete groups.
permission.viewView permissionsUsers can see the list of all available permissions and who has them.
permission.manageManage permissionsUsers can modify permission assignments and create custom permission profiles (advanced feature).

Related Actions

ActionRequired PermissionsNotes
Create a new useruser.manageSetting up employee or staff access.
Reset user passworduser.manageHelping locked-out users.
Assign permissions to a useruser.manage + permission.manageGranular access control (if using role-based assignment).
Create custom rolegroup.manageBundling permissions for a specific job function.
Lock/unlock user accountuser.manageDisabling access without deleting the user.
Audit permission changespermission.viewReviewing who changed access and when.

Which roles typically need these?

  • System administrator → all settings and user/group/permission permissions (for full system management)
  • HR manager → user.view, user.manage (for onboarding and offboarding)
  • Finance manager → settings.manage (to configure fiscal settings and tax rates)
  • Super admin → all permissions (ultimate control)

What happens without these permissions?

Without settings.manage, users cannot configure system parameters and the company cannot adapt Usystems to their business rules. Without user.manage, new employees cannot be added. Without group.manage, custom roles cannot be created, limiting access control flexibility.

Was this helpful?

More like this