Logo StartupKit
EN

Team Roles

Set up a new team member in one click — pick a predefined role like Recruiter, Security Analyst, or Billing Admin, then fine-tune their access if needed.

Why It Matters

Setting someone up shouldn’t mean thinking through every product one by one. A role is a one-click answer to “what is this person here to do?” — pick it, and Kit pre-fills their access to match. You can still fine-tune every product afterward: roles suggest, they don’t lock.

The Roles

Role Who it’s for
Admin Full access to everything — every product, plus billing, team management, security settings, and integrations.
Billing Admin Manages the subscription and billing, without access to the product modules. Ideal for finance staff.
Security Analyst Runs the Security module and manages security settings like SSO and API access, plus member-level access to Training and Performance.
Recruiter Full access to Hiring, plus member-level access to Outreach, Training, and Performance.
Growth Full access to Outreach, plus member-level access to Training and Performance.
Trainer Full access to Training, plus member-level access to Performance.
People Lead Full access to Performance, plus member-level access to Hiring and Training.
Member The default. Member-level access to every product — narrow it per product where someone shouldn’t be.

A few things worth knowing:

  • Managing the account stays with Admins, except where an Admin deliberately hands out a piece of it. Billing, team membership, and account settings are Admin territory — with three exceptions, each granted on purpose: a Billing Admin manages billing, a Security Analyst manages security settings — including requiring passkeys for the whole account — and a member given the invite members capability can invite teammates. The other roles are product roles; beyond connecting their own AI assistant, they don’t unlock any account settings.
  • Every role can connect an AI assistant. Kit for AI is open to every member, whatever their role. The connection reaches only the modules that member already has, at the level they already hold — see AI Agent and MCP Tools.
  • Existing members aren’t affected. Everyone keeps the role that matches what they had: account admins are Admins, everyone else is a Member.

Assigning a Role

Go to Settings → Team, open a member, pick a role from the radio cards, and save — the role and its module levels are saved together. You can also assign roles from the Modules matrix, using the role picker on each member’s row.

When you assign a role, Kit pre-fills the member’s access levels for Hiring, Security, Outreach, Training, and Performance to sensible defaults for that role — a Recruiter gets Hiring admin, a Trainer gets Training admin, a Billing Admin gets none of the products.

The invite members capability sits outside this. It’s granted per person on their access page, and picking or changing a role never adds or removes it — see Inviting Your Team.

Roles Suggest, They Don’t Lock

The pre-filled levels are a starting point, not a cage. After assigning a role, open any cell in the Modules matrix and change it — the override sticks. A Recruiter who also helps with Training? Give them the Recruiter role, then add Training access. Changing the role later re-suggests levels for the new role; anything you want to keep different, just set again.

Tip

Start from a role, then fine-tune. Picking the closest role and adjusting one or two products is faster and less error-prone than building someone’s access from scratch — and it keeps similar people set up consistently.

Note

A role changes what someone can reach, not what they’re assigned to. Per-item assignments — like restricted job postings or report ownership — still work exactly as described in Team Access Control. To restrict a single report or campaign to a chosen few — or grant one teammate a role on it — see Item-Level Access.

Quick Checklist

  • When inviting someone new, pick the role that matches their job before anything else
  • Fine-tune individual product levels only where the role’s defaults don’t fit
  • Reserve Admin for people who genuinely manage the account
  • Use Billing Admin for finance staff instead of making them full Admins
  • After changing someone’s role, glance at their access page to confirm the levels look right

Type to search...