Roles & access
A grant = platform × function × level. This generalises Fanogram’s live Roles & Access with a platform dimension — same model, three product columns. Impersonate is a permission, never a role.

A grant = platform × function × level.
Demo data
Standard roles
5
permanent · editable, never deletable
Custom roles
0
built here · deletable
Members
6
2 super admins via allowlist
Grant changes · 24h
Awaiting source

Standard role types common across platforms
Permanent and editable — the shared vocabulary every product admin understands. Pick one to load it into the builder below, or start a custom role from scratch.

Super adminallowlist
2 members assigned
everythingallowlist
Adminpermanent
3 members assigned
accountsmoderationmodules
Financepermanent
1 member assigned
ledgerpayoutsVAT
Supportpermanent
2 members assigned
ticketsghost read-first
Moderatorpermanent
1 member assigned
queuesbanned words
+
New custom rolename it · paint the matrix · assign members

Role builder Admin
Click a level chip to grant it for that platform × function; click it again to clear back to none. Greyed cells are the founder’s progressive-enablement story: the section arrives in folo.link when it is built e2e — until then no role can be granted into it.

Function
Folo
Fanogram
Receipt
Accountsdirectory · records · KYC
ViewAmendApprove
ViewAmendApprove
ViewAmendApprove
Financeledger · payouts · fees
ViewAmendApprove
ViewAmendApprove
ViewAmendApprove
Trust & Safetyfraud · takedowns · tracking
ViewAmendApprove
ViewAmendApprove
ViewAmendApprove
Moderationqueues · banned words
ViewAmendApprove
ViewAmendApprove
ViewAmendApprove
ComplianceVAT · DSAR · age rules
ViewAmendApprove
ViewAmendApprove
arrives when built e2e
Growthcampaigns · internal promo
arrives when built e2e
arrives when built e2e
arrives when built e2e
Content / Modulesmodule & feature manager
ViewAmendApprove
ViewAmendApprove
arrives when built e2e
Systemhealth · Wingman · status
ViewAmendApprove
ViewAmendApprove
ViewAmendApprove
Roadmapprojects · progress
ViewAmendApprove
ViewAmendApprove
ViewAmendApprove
Supporttickets · bug reports
ViewAmendApprove
ViewAmendApprove
ViewAmendApprove
Capabilities — permissions, never roles
Capabilities are cross-cutting permissions a role can carry — never roles themselves. Impersonate / act-as: every session is audited, banner-flagged to the person being impersonated, and time-boxed; entry lives on the Ghost & view-as screen — the chip only makes it possible.
Impersonate / act-as
View payments
Manage roles
Manage modules

Members
Click a role chip on a row to assign or remove it. Effective permissions are the union of every assigned role — the grants chip on each row opens the full breakdown. Super admins are code-allowlisted — always everything, not editable here.

BW
Brian W.brian@folo.link
super admin · allowlist — always all
SO
Simon O.simon@folo.link
super admin · allowlist — always all
DR
Dana R.dana@folo.link
AdminFinanceSupportModerator
MT
Mara T.mara@folo.link
AdminFinanceSupportModerator
JH
Jin H.jin@folo.link
AdminFinanceSupportModerator
KN
Kavi N.kavi@folo.link
AdminFinanceSupportModerator
One gate rule — grants live here, enforcement is per-product.
Every admin surface on every platform resolves access through one resolver: grants live here, enforcement is per-product. folo.link owns identity + grants; each product’s admin enforces them locally. Every grant change is audited with actor, before/after and reason.

Role writes go through the folo.link grants API — the one surface the central command owns outright. Product data stays with the products.