Understand roles and access
Galdera controls access at two levels:
- Your organization role determines what you can administer across the workspace.
- Your asset access determines which forecast versions, overlays, and documents you can view or edit.
Organization roles
| Role | What it can do |
|---|---|
| Admin | Manage people and organization settings, set default member access, and access every workspace asset. |
| Member | Use Galdera and open the assets they are allowed to view or edit. |
An administrator can change someone’s role in Settings → People.
Group-based role assignment is an optional workspace configuration. Do not depend on identity-provider groups unless Galdera has confirmed they are enabled and your team has tested both Admin and Member assignments.
Asset access
Open a forecast version, overlay, or document and select Share to manage access to it.
- Can view lets someone open and read the asset.
- Can edit lets someone change the asset and manage its sharing.
- No access removes general access to the asset. Someone with an individual grant may still be able to open it.
Identity-provider groups do not manage asset access.
Default member access
An administrator can choose the workspace default in Settings → General:
- None — members need access to be granted.
- Read — members can view assets by default.
- Write — members can edit assets by default.
An asset’s General access setting applies only to that asset and can give everyone in the workspace Can view or Can edit access.
See Sharing and permissions for the full sharing workflow.