Skip to main content
Julian
Gainsight Employee ⭐️⭐️⭐️
May 3, 2019
FAQ

User roles - overview of permissions and what they do

  • May 3, 2019
  • 22 replies
  • 3880 views
User roles - overview of permissions and what they do

Custom user roles are used for two purposes: Grouping users and managing permissions. In this article you can find an overview of all custom user roles, and what rights they give to a user when you assign them.
 

General information


A custom user roles sits "on top" of primary user roles. This means that, if a primary role gives a user the right to access something, a custom user role cannot take this permission away from them. If you want to learn more about primary user roles and what they do, check out this article.

With the exception of ‘Upload files to posts’, all of these custom user role permissions grant access to Control.

If you’re on a pricing plans with a limited number of seats, it’s good to be aware that granting a user a custom user role with one of these permissions will increase your seat usage.


Overview of custom user role permissions


Analytics

This will give users with this custom user role access to the Analytics section in the Control Environment. Users with this role can:

  • View the Dashboards
  • Request and download exports
  • Request and download post field analysis data

Forum moderation

With this custom user role, users will get general access to the Control Environment, where they can:

  • See community content and moderate it (access to "Forum overview" and individual topic moderation)
  • Create new content
  • Use advanced filters and search

Note: If you are using a SSO-login, a user will not have a password. So to be able to log in to the Control Environment their password needs to be changed/defined in their user profile page before they can actually access.


Users

This custom user role will allow a user to view the user overview in Control

Note: For assigning/unassigning/creating/deleting custom user roles, a user needs to have the rights located in "custom roles".


Inbox

This custom user role will give a user the right to

  • Visit and send private messages from the inbox in the Control Environment
  • Mass-pm users in the Control Environment (send up to 50 pm at the same time)


Platform

With this custom user role, a user can access the Platform section in Control and all actions available in those pages


Profile fields

This custom user role gives permission to access and change/delete/create profile fields


Ranks

Owning this custom user role will enable a user to access and change/delete/create ranks


Badges

By assigning this custom user role, you will give a user permission to access and change/delete/create Badges


Custom roles

This custom user role will give a user the right to:

  • Access and change/delete/create custom user roles
  • Assign/remove custom user roles for individual users

Note: This custom user role is very powerful, as it manages permissions and a user could abuse it to give him-/herself more rights (and take over your community). So handle this with care.


Emails

Having this custom user role gives a user permission to access Phrase management (adding, changing, removing text strings on the community and email notifications)


Visibility

When a user has this role, he/she can adjust the visibility of the platform (making the community private access via password / offline / change forum description)


SSI Settings

This role gives permission to add / change / delete the SSI settings (adding, changing, removing SSI code for Header & Footer)


SSO Settings

With this role a user gets access to the SSO login setup (if applicable for your community)


Embeddable Widgets Setup

This custom user role gives permission to set up and change the look and feel of the embeddable widgets


Upload files to posts

When users have this custom user role assigned, they will be able to upload files to their posts (in both the Front- and Back-end).

Note: This only is relevant if file uploads generally have been disabled for all users


Appearance

With this custom user role a user can:

  • Change the styling of your community
  • Create/change the favicon and share image

How to Provide Any Registered User with Control Access/Permissions

  1. Go to Control > General Settings > Custom User Roles > Add role.
  2. Create a title for this role (e.g. Moderation - Customer Care).
  3. Enable the permissions you want this role to have access to (in our example, we want Bob from Customer Care to have access to ‘Forum moderation’, ‘Users’, and ‘Inbox’).
  4. Click Save Changes.
  5. Go to User overview, find the user, and enable your new custom role on their profile.

⚠️ If your community uses SSO, you’ll need to ‘reset’ the password of a registered user (on their user profile within Control) before you can provide them with permissions.


More tips & tricks

Here you can find more interesting articles around custom user roles and what to do with them:
Hidden areas on the forum - a step-by-step guide
Primary user roles - what they stand for

Of course, should you have any questions or feedback, please let us know!

Cheers,

Julian

22 replies

Julian
JulianAuthor
Gainsight Employee ⭐️⭐️⭐️
November 11, 2022

Hi terore,

first of all, congratulations for posting 100 replies on our community!🎉

So I’ve double checked this on a test environment, it is correct that this “Control” button is not being displayed in the frontend, so users would have to manually access Control via url. I believe that we currently only show this for primary roles that have access rights to Control. 

I understand that this is a bit uncomfortable: With this button you can open the same page in Control, now you’d need to e.g. manually copy parts of the url to then paste it behind the Control domain.

I personally do not think that there is a good reason why this has not been added for this permission, it might simply was overlooked when we introduced this button in the frontend. I will share it with our UX / product team so that we add it to our backlog.

Please let me know if you have more questions or feedback here!

I follow my nose, it always knows
revote
VIP ⭐️⭐️⭐️⭐️⭐️
November 11, 2022

first of all, congratulations for posting 100 replies on our community!🎉

I will share it with our UX / product team so that we add it to our backlog.

Thanks, twice 😎

Contributor ⭐️
February 5, 2026

Is there any update to user permissions since 3 years ago? 

i am particularly in what permissions all community members have and if more experienced and contributing members can have additional permissions. 

As an example, a more experienced member could use his/her standard signature with a reminder to accept the reply if the reply answers the community member’s question.  A second ability could be to mark a suggestion as accepted if the more experienced member so decides. 

thanks,  ​@Eliot 

Sudhanshu
Gainsight Product Manager
February 24, 2026

Hi ​@Eliot! Thank you for sharing your use cases. We’re planning to improve permissions this year, including expanded capabilities for super users. 

@Larry is leading this initiative and can follow up with more details. 

Larry
Gainsight Employee ⭐️
Gainsight Employee ⭐️
February 25, 2026

Hi everyone,

I’m Larry, and as Sudhanshu mentioned, I am leading the initiative to overhaul our community permissions.

I’ve been reading through your feedback regarding the need for more granular control—specifically around content types (Articles vs. Questions) and empowering Super Users with moderation-lite tools.

I wanted to share a quick update: we are officially working on granular permissions now, with a target release for late Q1 / early Q2 2026.

In the coming weeks, I’ll be reaching out to customers (including within this thread; let me know if you are interested!) to set up feedback sessions. We want to ensure the new framework addresses the feedback you've highlighted here.

Stay tuned for more updates soon!

Larry Imgrund || Senior Product Manager & Community Nerd
darkknight
Expert ⭐️
March 29, 2026

@Larry I’m just starting to become familiar with the Customer Community platform as my company is looking at acquiring it.  Is the attached permissions matrix an accurate representation of the current capabilities by role?

If so, I’d love to know when the ability to “Configure email campaigns” will be available for use in Custom Roles.

From where I’m sitting right now, if this matrix is accurate, the Community Manager role has way too much access to more Administrative functions such:

  • Create/manage taxonomy (Parent/Child categories),
  • Enable / disable platform modules
  • Set community visibility (for real?!)
  • Create / assign / delete custom user roles (user can self-escalate to Admin?!)
  • Create/Manage custom fields
  • Seat usage management



 

Jeff Kirkpatrick
Contributor ⭐️⭐️
April 10, 2026

@darkknight - thanks for sharing the matrix. Did you ever get confirmation if that was accurate? It’s exactly what I came to the community looking for. Where did you find it? 

Thanks. 

darkknight
Expert ⭐️
April 11, 2026

@alan_csod I asked Claude for help in generating that doc based on Gainsight’s public CC documenation (of which there seems to be shocking little - and rather old, as well)

That’s why I was asking for someone to confirm.  I have not had any responses yet. 

@Sudhanshu ​want to bring this to your attention as well to see if you may help address my comments above.

Jeff Kirkpatrick
Contributor ⭐️⭐️
April 17, 2026

Love that use of Claude, ​@darkknight

I just spoke with ​@Julian as he’s our CSM, and I pointed him to this thread. He said he would review the matrix and let us know if it’s accurate. 

darkknight
Expert ⭐️
May 6, 2026

@alan_csod have you heard anything back from ​@Julian on this?

Jeff Kirkpatrick