Access control¶
Stackify has a three-layer access model: workspace roles, card-level roles, and row-level grants.
Card-level roles¶
Every collaborator on a card has one of three roles:
| Role | What they can do |
|---|---|
| Owner | Full control: edit data, manage fields, share, delete the card, transfer ownership |
| Editor | Add, edit, and delete records and fields; cannot change permissions or delete the card |
| Viewer | Read-only access to all records and fields |
See Sharing a card to add collaborators and assign roles.
Row-level access¶
Individual records can have explicit per-user access grants that override the card-level role.
Use cases: - Hide sensitive records from specific Viewers - Grant edit access to a specific record for someone who is otherwise a Viewer
Set row-level access¶
- In the grid view, right-click a row → Manage access.
- Click + Add rule.
- Select a user.
- Choose the access level: Hidden (user cannot see this record) or Editor (user can edit this record regardless of card role).
- Click Save.
Note
Card Owners and Admins always bypass row-level restrictions and see all records.
Field-level permissions¶
Permissions can be set at the field level, restricting specific fields to a subset of card collaborators.
- A Viewer on a card can be given Editor access to specific fields
- A field can be hidden from all but selected collaborators
Field-level permissions are configured from the field settings panel (click the field name → Permissions).
Workspace roles¶
Separate from card permissions, every workspace member has a workspace-level role:
| Role | Access |
|---|---|
| Admin | Full access to all workspace settings, admin panel, and all cards |
| Member | Standard user; access to cards is governed by card-level roles |
Workspace roles are managed by admins in the Admin → Users panel.