User roles and permissions reference
Roles are assigned per instance. Inbox visibility is assigned separately, so an agent's role sets what they can do and their inbox assignment sets what they can see.
| Capability | Owner | Admin | Supervisor | Agent |
|---|---|---|---|---|
| Billing and contracts | Yes | No | No | No |
| Instance settings | Yes | Yes | No | No |
| Channels and senders | Yes | Yes | No | No |
| Automations and templates | Yes | Yes | Request | No |
| Users and roles | Yes | Yes | No | No |
| Retention and erasure | Yes | Yes | No | No |
| Reporting | Yes | Yes | Yes | Own work |
| Inbox reply | Yes | Yes | Yes | Assigned inboxes |
Review the user list quarterly and remove leavers promptly — the review record is useful evidence in a security questionnaire.
Next step
Bring this to your enterprise stack
See how a dedicated Arino One instance — deployed in your region (EU, NA or APAC) — would sit inside your operation. Architecture, DPA, and rollout plan walked through live.