Change user permissions
How to designate editing permissions across the product and assign admins
Written By Micah
User permissions enable you to limit who can view, edit, and download in the platform. Permissions help protect your compliance program by defining who has editing capabilities and who has access to specific features. In Strike Graph, there are two levels of permissions: Managers and Contributors.
When new users in your organization sign up in Strike Graph, they will automatically be given Contributor permission settings.
Managers
Managers have full editing access in Strike Graph. Their permissions are not limited, and they can designate permissions to other other users within your organization. Managers can also remove users from the platform. Managers are essentially the "admins" of your Strike Graph environment.
When you click on the Settings icon in the bottom left of the main navigation, you will be taken to your account profile. Managers will have a section called Team Settings and this is where they will be able to designate permissions for users within their organization. Note that this section is only accessible to the Managers and is not accessible to Contributors.


Administer the roles and permissions for users within your organization by selecting their email from the dropdown list and selecting the preferred permission level.
By the way, there's no limit to the number of Managers! You can set all or just one of the users in your organization as a Manager.
Contributors
Contributors have limited edit and download access in Strike Graph. Contributors can only edit items when they are the owner of that item (for instance a risk, control, or evidence). For items where they are not the owner, they have read-only access, and some additional features are not available for contributors.
If a Contributor is the owner of a risk, control, or evidence, they can...
Edit the specific item they own. This includes the title, description, progress, effective date, etc.
Link their item to other risks, controls, and evidence across the platform.
Upload and download files to evidence items
Even if a Contributor is the owner, they still cannot...
Change the owner or status (active/inactive). Only Managers can change owners and statuses.
Download risk, control, or evidence lists as a .csv (because this could incorporate items they do not own).
If a Contributor is not the owner, then they will have read-only access, and they will not be able to download any evidence files or exports from the platform.
Here's an example of what the read-only view will look like to Contributors who do not own an evidence item. Note that if a contributor attempts to download the attached file upload_test_file.gif they will not be able to. Contributors can only upload and download files to evidence items they are the owner of.

We recommend establishing user permissions by designating Managers and Contributors in your organization to help protect edited changes. If you need a user to add to some items or features they typically do not have access to, then you can make them a Manager to make those changes and switch them back to Contributor.
Have questions? Reach out to your Customer Success Manager to learn more.