Views:

Add or edit a custom user role to grant custom app permissions and scope to TrendAI Vision One™ user accounts.

Permissions determine which TrendAI Vision One™ apps a user assigned the role can open, and which actions the user can perform in each app.
The asset visibility scope is separate from permissions. It determines which data and app assets the user can see in the apps that the role grants access to.

Procedure

  1. Go to AdministrationUser Roles.
  2. To add a new custom user role, click + Add role.
    The Create custom role window appears.
    To view only custom user roles, select Role typeCustom. You cannot add or edit a predefined role.
  3. Under General information, specify the role name, description, and control flag settings to determine whether the role can be assigned to API keys, user accounts, or both.
    Granting Master Administrator in combination with other permissions can be risky. Be cautious granting Master Administrator to a custom user role with:
    • permission to configure user roles and the control flag allowing it to be assigned to user accounts
    • permission to configure accounts
    As of October 27, 2025, the Master Administrator level permission cannot be assigned to API keys. API keys granted Master Administrator before that date retain their permission, but it is recommended that they be assigned a different role since Master Admin level API keys could be used to make user accounts changes.
  4. Under Permissions, select permissions to grant to the role.
    Permissions are listed by app, so one role can grant a different level of access to each app.
    Access
    Description
    Full access
    Grants every permission available for the app.
    Read-only
    Grants permission to view the app and its data, but not to change settings or perform actions.
    Partial access
    Applied automatically when you select some, but not all, of the permissions available for the app.
    Some apps require selecting the Read-only or Full access permission before selecting other permissions.
  5. On the Data and app assets tab, select an asset visibility scope or create a new scope for each TrendAI Vision One™ app.
  6. Click Save.