Roles & permissions
Permissions in MinZalo are granted through roles. Each member holds one or more roles; effective permissions are the union of all their roles.
Four system roles
Section titled “Four system roles”| Role | For | Scope |
|---|---|---|
| Owner | The workspace owner | Full control, including settings, billing and roles. |
| Manager | Operations lead | All operational actions; not workspace settings, billing or roles. |
| Agent | Front-line sales | Only assigned accounts/inbox/contacts; reply and nurture. |
| Viewer | Oversight | Read-only across everything; no edits. |
Custom roles
Section titled “Custom roles”From the Growth plan, you can create custom roles with exactly the permissions you need under Workspace settings → Roles. For example, a role that can only manage campaigns without seeing the inbox.
Read scope by role
Section titled “Read scope by role”- See all vs see only assigned are separate permissions for each area (Zalo accounts, inbox, contacts). Agents only see what’s assigned to them; managers/viewers see everything.
- Actions (add/remove accounts, assign, reply, manage contacts) are independent permissions, granted separately.