Define custom dashboard roles
Create a custom dashboard role and pick which Scalekit dashboard permissions it grants.
Custom dashboard roles grant access to specific Scalekit dashboard areas. Use one when Admin is too broad and a fixed role such as Member or Developer is too narrow.
These permissions apply to the dashboard, not to users in your application. Application roles stay in Create roles and permissions.
Before you start
Section titled “Before you start”- Roles appears under Workspace in workspace settings, between Team Members and Billing
- You hold
dashboard_roles:write(and you can only grant permissions you already have) - You know which dashboard areas the job must open
Permission groups
Section titled “Permission groups”The role drawer groups dashboard permissions. Typical groups:
| Area | What it gates |
|---|---|
| Workspace | Workspace name and settings |
| Members | Team Members invites and removals |
| Dashboard roles | Creating and editing dashboard roles |
| Environment access | Per-environment role overrides |
| Billing | Plan, invoices, and payment method |
| Environments | Creating and renaming environments |
| Environment settings | Auth methods, session policy, and related env settings |
| Branding, emails, custom domain | Customize pages |
| Applications and API credentials | Applications and client secrets |
| Organizations, users, SSO, SCIM | Customer-tenant configuration |
| Webhooks, interceptors, logs | Developer tooling |
Permissions marked Sensitive cover irreversible actions, live credentials, or the ability to grant access to others.
-
Open Roles
Section titled “Open Roles”In the header, click the workspace name and open workspace settings.
In the workspace left nav, click Roles.
The table lists Name, Permissions, Description, and Type. Fixed roles ship with Scalekit. Custom roles are ones you created.
-
Create a role
Section titled “Create a role”Click Create role.
Enter a Role name (50 characters or fewer). Name it after the job, not the person — for example Billing Owner or Support.
Add a Description so the next Admin knows when to assign it.
-
Start from a preset (optional)
Section titled “Start from a preset (optional)”In Start from, pick a preset if one matches the job:
Preset Use when Member floor Baseline read access Developer Apps, credentials, and env configuration Auditor Read-only review Support Helping customers without billing or role admin Billing Owner Plan and invoices Designer Branding and emails A preset is a starting point. You can change any permission after you pick one.
-
Choose permissions
Section titled “Choose permissions”Enable only the permissions this job needs. Use Filter permissions, Select all on a group, or Clear all.
-
Save and assign
Section titled “Save and assign”Click Save changes.
Open Team Members, choose Edit role on the member, select the new role under Workspace role, and click Save. See Set up workspace roles.
Verify
Section titled “Verify”- Open Roles and confirm the new row shows Custom and the permission count
- Assign the role to a test member
- Sign in as that member and confirm allowed pages load
- Confirm a denied page shows an access error instead of the setting
Common questions
Section titled “Common questions”Can I delete a custom role?
Open the role’s Role actions menu and choose Delete. You cannot delete a role that is still assigned. Reassign those members first. Fixed roles cannot be deleted.
Does this role apply inside my application?
No. Dashboard roles only gate app.scalekit.com. Application roles for your users live in left-nav Roles & Permissions and in Create roles and permissions.