
© Patio 2026•Privacy•Terms•How Payments Work

© Patio 2026•Privacy•Terms•How Payments Work
Access Control helps you decide who can see and manage different parts of your workspace. What you can do Choose a role and update its permissions Create a new
Access Control helps you decide who can see and manage different parts of your workspace.
Choose a role and update its permissions
Create a new custom role
Delete a custom role (if no users are assigned to it)
Limit access by location for supported modules
Go to Workspace.
Open Settings.
Click Access Control.
Select a role from the Role dropdown.
In each permission section, enable or disable modules.
Click Save.
What happens when you save:
Your role permissions are updated for the organization.
Changes apply to users assigned to that role.
Open the role actions menu.
Click New role.
Enter a role name.
Choose permissions.
(Optional) Set location scope.
Click Create new role.
Click Save on the main page to persist all edits.
You can delete a role only if:
It is not a protected system role
No users are assigned to it
If users are still assigned, reassign them first.
Location scope lets you restrict a role to specific locations.
No locations selected means access to all locations.
Selecting locations limits access to those locations only (for supported modules).
Some roles are protected and have special behavior:
Super administrator: full workspace access
Customer: no workspace access
These roles may show informational warnings instead of editable permission controls.
Access modules are grouped permission bundles.
Instead of toggling every single permission one by one, you enable or disable access by module.
Each module controls a set of permissions.
Enabling a module grants all assignable permissions in that module.
Disabling a module removes those permissions.
A role only gets what is both assignable and enabled.
Orders: checkout, returns, and order lifecycle actions.
Customers: customer records, account access, and role-related customer management.
Subscriptions: plan management, renewals, and status updates.
Transactions: payment activity, records, and transaction operations.
Products: product catalog operations.
Maintenance: maintenance workflows and ticket handling.
Content: pages/forms and published workspace content.
Terms and policies: policy and legal content management.
Analytics: workspace insights and reporting access.
Settings: workspace configuration access.
Access control: role and permission administration.
Finance and plan: billing/plan and finance-related controls.
Access Control depends on Settings:
If Settings is not enabled for a role, Access Control permissions are removed for that role.
System-role behavior:
Super administrator has full workspace access.
Customer has no workspace access in this page.
Location scope applies separately:
A module can be enabled, but access may still be limited to selected locations.