Learn about each Admin Permission that can be granted in a System Role
Admin Permissions are typically given to administrators or improvement leaders who need a greater level of access in KaiNexus.
Admin Permissions
Board Administrator
Provides the ability to create, edit, and share access to public Boards within the selected Location(s).
- This permission references the Board's Location.
- This permission is typically given to location leaders, improvement specialists, and/or the implementation team at some level so that they have the ability to give their team access to Boards they have created.
Card Administrator
Provides the ability to edit Cards within the selected Location(s).
- This permission references the Location defined in a Card's permissions.
- This permission is typically given to users who need the ability to edit specific Cards on Boards, but do not require full Board Administrator permissions.
Escalation Administrator
Provides the ability to escalate and deescalate any Items the person has the ability to edit within the selected Location(s).
- This permission is typically given to location leaders, improvement specialists, and/or the implementation team at some level to ensure Items in an escalated state can be escalated or de-escalated at any point if needed.
Global User Administrator
This permission provides the ability to manage users anywhere in the organization. Additionally, this provides permission to manage the organization's users, Titles, Positions, Employee Types, and Certifications.
- This option will not be available if the Specific Location checkbox is enabled for this Role.
- This permission is typically given only to improvement specialists and/or the implementation team.
- When enabled, additional options will appear:
- Create New Users: Provides the ability to create new users.
- Grantable Roles: By default, users with the "Global User Administrator" permission can grant other users (or themselves) any Role. To restrict the Roles they can grant, click the Grantable Roles checkbox to enable it, then select the Roles that they should have permission to grant from the drop-down to its right.
- Receive Account Requests: When enabled, users with this Role will receive all support request emails.
Local User Administrator
This permission provides the ability to manage users in the user's Location and below.
- This permission is typically given only to improvement specialists and/or the implementation team.
- When enabled, additional options will appear:
- Create New Users: Provides the ability to create new users.
- Grantable Roles: By default, users with the "Local User Administrator" permission can grant other users (or themselves) any Role. To restrict the Roles they can grant, click the Grantable Roles checkbox to enable it, then select the Roles that they should have permission to grant from the drop-down to its right.
- Receive Account Requests: When enabled, users with this Role will receive support request emails. Note: A Local User Administrator with Receive Account Requests enabled will receive all account requests for the organization, not just requests from users in their Location. This is because the account request form cannot identify which Network Location the submitter belongs to.
Impersonate User
This option will not be available if the Specific Location checkbox is enabled for this Role. This permission provides the ability to impersonate any users that the user has permission to edit.
- This permission is typically given only to improvement specialists and/or the implementation team.
Global Badge Administrator
This permission provides the ability to grant and revoke manually grantable Badges to users that the user has permission to edit.
- This permission is typically given only to leaders, improvement specialists, and/or the implementation team.
- This option will not be available if the Specific Location checkbox is enabled for this Role or if the Badges module is not enabled for your organization.
Role Administrator
This permission provides the ability to manage the organization's Roles.
- This option will not be available if the Specific Location checkbox is enabled for this Role.
- This permission is typically given only to improvement specialists and/or the implementation team.
Quality Administrator
This permission provides the ability to manage the organization's Network, Level Types, Time Savings People, Standard Work, Weighted Scores, Fields, Attributes, and default print settings for Templates.
- This permission is typically only given to improvement specialists and/or the implementation team.
- This option will not be available if the Specific Location checkbox is enabled for this Role.
System Administrator
This permission provides the ability to view and manage the organization's General settings, Login Notices, and Tooltip Customization.
- This option will not be available if the Specific Location checkbox is enabled for this Role.
- This permission is typically only given to improvement specialists and/or the implementation team.
API Administrator
This permission provides the ability to create and edit API Keys and to grant any Role to any API Key.
- This permission is typically only given to improvement specialists and/or the implementation team.
- This option will not be available if the Specific Location checkbox is enabled for this Role.
X-Matrix Administrator
This permission provides the ability to create and edit any X-Matrix.
- This permission is typically only given to improvement specialists involved with Strategy Deployment.
- This option will not be available if the Specific Location checkbox is enabled for this Role.
Comment Administrator
This permission provides the ability to edit or delete other people's comments, notes, and updates on Items that the user has permission to edit. It also provides the ability to edit or delete other people's comments on a Comment Card if the user is an Editor for that Card or Board.
- This permission is typically only given to improvement specialists and/or the implementation team.
- This option will not be available if the Specific Location checkbox is enabled for this Role.
Timeline Administrator
This permission provides the ability to delete timeline entries on Items that the user has permission to edit.
- This option will not be available if the Specific Location checkbox is enabled for this Role.
- This permission is typically only given to improvement specialists and/or the implementation team.
Multi Chart Import
This permission provides the ability to import updates to all Charts in the organization.
- This option will not be available if the Specific Location checkbox is enabled for this Role.
Other articles in Series
- System Role Permissions
- System Roles: Template and Workflow Permissions
- System Roles: Advanced Permissions