Roles & Permissions
Arkios Enterprise has four role types. Each role builds on the previous one, with additional permissions and broader control.
1. Viewer
Viewers can use the platform but cannot create or manage core resources.
Viewers can:
- View available agents (see Agents Overview)
- Use agents in chat
- Use platform features available to members
Viewers cannot:
- Create agents (see Create Agents)
- Create memories (see Memory System)
- Add or configure tools (see Tools & Connectors and Tool Hub)
2. Member
Users have all Viewer permissions, plus creator-level permissions for their own resources.
Users can:
- Do everything a Viewer can do
- Create and manage agents they created (see Create Agents and Deploy Agents)
- Create and manage memories they created (see Memory System)
Users cannot:
- Manage enterprise-wide settings reserved for Admins and Owners
3. Admin
Admins have full operational control across the enterprise workspace.
Admins can:
- Do everything a User can do
- Access all agents and memories created by all users (see Agents Overview and Memory System)
- Change access settings for memories, agents, and tools (see Knowledge Sources, Tools & Connectors, and Tool Hub)
- Create and manage teams
- Manage member credits
- View platform analytics
- Add or remove members from the enterprise
4. Owner
Owners are the users who created the enterprise.
Owners can:
- Do everything an Admin can do
- Manage billing and subscription operations
- Manage invoices
- Change subscription plans and related billing settings
Related Documentation
Quick Comparison
- Viewer: Consume only (view and use)
- User: Consume + create and manage own resources
- Admin: Enterprise-wide operational control
- Owner: Admin capabilities + billing and subscription control
Best Practice
Assign the lowest role that still allows a person to do their job. This helps maintain security, accountability, and clear governance across the enterprise.
Last updated: April 3, 2026