# Access and Permission Policies

### Roles x Permissions

There is a common access profile for all products and each of the other profiles has specific permissions per product, as you can see below:

### General

<table><thead><tr><th width="224">Role</th><th>Permission</th></tr></thead><tbody><tr><td>Business Super Admin</td><td>Full access permission to all platform products within the company - recommended for those who will work directly with FinOps and managers</td></tr><tr><td>Organization Super Admin</td><td>Full access permission to all platform products within the organization, with access to all companies in the organization - recommended for those who will work directly with FinOps and managers</td></tr></tbody></table>

### **Lighthouse**:

<table><thead><tr><th width="229">Roles</th><th>Permissions</th></tr></thead><tbody><tr><td>Admin</td><td>Profile that gives access to view, edit and delete Lighthouse features.</td></tr><tr><td>Editor</td><td>Profile that gives access to view, edit and delete Lighthouse features, but in specific and segmented areas.</td></tr><tr><td>Readonly</td><td>Profile that only gives viewing access to Lighthouse features, without being able to edit or delete anything, but in specific, segmented areas.</td></tr></tbody></table>

### CCA:&#x20;

<table><thead><tr><th width="229">Roles</th><th>Permissions</th></tr></thead><tbody><tr><td>Admin</td><td>Profile that gives access to view, edit and delete CCA features</td></tr><tr><td>Editor</td><td>Profile that gives access to view, edit and delete CCA features, similar to Admin</td></tr><tr><td>Readonly</td><td>Profile that only gives viewing access to CCA features, without being able to edit or delete anything</td></tr></tbody></table>

### Autofix:&#x20;

<table><thead><tr><th width="229">Roles</th><th>Permissions</th></tr></thead><tbody><tr><td>Admin</td><td>Profile that gives access to view, edit and delete Autofix features</td></tr><tr><td>Editor</td><td>Profile that gives access to view, edit and delete Autofix features, similar to Admin</td></tr><tr><td>Readonly</td><td>Profile that only gives viewing access to Autofix features, without being able to edit or delete anything</td></tr></tbody></table>

### Spot:&#x20;

<table><thead><tr><th width="229">Roles</th><th>Permissions</th></tr></thead><tbody><tr><td>Admin</td><td>Profile that gives access to view, edit and delete Spot features.</td></tr><tr><td>Editor</td><td>Profile that gives access to view, edit and delete Spot features, similar to Admin.</td></tr><tr><td>Readonly</td><td>Profile that only gives viewing access to Spot features, without being able to edit or delete anything.</td></tr></tbody></table>

### SP Manager:

<table><thead><tr><th width="229">Roles</th><th>Permissions</th></tr></thead><tbody><tr><td>Admin</td><td>Profile that gives access to view, edit and delete SP Manager features.</td></tr><tr><td>Editor</td><td>Profile that gives access to view, edit and delete SP Manager features, similar to Admin.</td></tr><tr><td>Readonly</td><td>Profile that only gives viewing access to SP Manager features, without being able to edit or delete anything.</td></tr></tbody></table>

### Space:

<table><thead><tr><th width="229">Roles</th><th>Permissions</th></tr></thead><tbody><tr><td>Admin</td><td>Profile that gives access to view, edit and delete Space features.</td></tr><tr><td>Editor</td><td>Profile that gives access to view, edit and delete Space features, similar to Admin.</td></tr><tr><td>Readonly</td><td>Profile that only gives viewing access to Space features, without being able to edit or delete anything.</td></tr></tbody></table>
