Skip to main content
Feedback

User roles and privileges

This table defines the user roles and the default privileges assigned to each role.

  • A Boomi Enterprise Platform user corresponds to a unique email address that can be given direct access to one or more Boomi accounts.
  • A role is assigned to a user to enable a list of privileges.
  • A privilege is a right reserved to a role that allows a user to access or perform actions in a specific area of the Boomi Enterprise Platform.

Boomi Enterprise Platform includes several user roles and many privileges. The Boomi Enterprise Platform roles are: Administrator, Standard User, Production Support, and Support. If these roles do not meet your needs, your administrator can create custom roles for your account.

PrivilegeDescriptionAdministrator RoleStandard User RoleProduction Support RoleSupport Role
API AccessUse the Platform API to access account data.img Includedimg Excludedimg Excludedimg Excluded
API Management - AccessAccess to API Management. See API Management Roles and Privileges for API Management-specific details.img Includedimg Excludedimg Excludedimg Excluded
API Management - RolesManage roles for an account. Note: This is a deprecated privilege that should not be used.img Includedimg Excludedimg Excludedimg Excluded
Account AdministrationAccount configuration and administration.img Includedimg Excludedimg Excludedimg Excluded
Account Group ManagementManage all account groups and access restrictions.img Includedimg Excludedimg Excludedimg Excluded
Runtime ManagementRuntime configuration and administration. Provides read and write access to runtime properties and settings, and allows you to download the basic runtime and cluster installers on the Build page.img Includedimg Includedimg Includedimg Excluded
Runtime Management Read AccessView runtime properties and settings.img Includedimg Includedimg Includedimg Excluded
Boomi AssureAdminister Boomi Assure data.img Includedimg Includedimg Excludedimg Included
Branch Create & Modify AccessCreate and update branches using Branch Management and the Branch object. Create hotfix branches from the Packaged Deployments page or Deployments page.img Includedimg Includedimg Excludedimg Excluded
Branch Delete AccessDelete branches using Branch Management and the Branch object.img Includedimg Includedimg Excludedimg Excluded
Branch Read and Write AccessRead access to processes and components on all branches. Write and modify permissions on all branches except main.img Excludedimg Excludedimg Excludedimg Excluded
Build Read AccessView processes and components. Read access to Branch Management, all branches, and all components and processes within branches.img Includedimg Excludedimg Excludedimg Excluded
Build Read and Write AccessDesign, build, and modify processes and components.img Includedimg Includedimg Excludedimg Excluded
DashboardAccess to the Account, HTML Status, and Real-time Dashboards.img Includedimg Excludedimg Excludedimg Excluded
Dedicated Clouds ManagementDedicated cloud configuration and administration.img Includedimg Excludedimg Excludedimg Excluded
DeveloperCreate and publish new components using the Integration SDKs.img Includedimg Includedimg Includedimg Included
Environment ManagementManagement of all environments. Ability to add role(s) to environments so that only users with the role(s) have access to the environments. (Environments are available from the Runtime Management page so you also need the Runtime Management privilege.)

Note: Users can use the Environment Management Read Access and Environment Management Full Access privileges to create a custom role to manage read and write access for specific environments.
img Includedimg Includedimg Excludedimg Excluded
ExecuteExecute or retry available processes.img Includedimg Includedimg Includedimg Included
Integration PackIntegration pack release and management of integration pack versions.img Includedimg Includedimg Excludedimg Excluded
LicensingView currently deployed connections and runtime cloud usage.img Includedimg Includedimg Includedimg Included
Packaged Component ManagementCreate and manage deployable packaged components. Packaged components can also be shared in the Process Library and integration packs.img Includedimg Includedimg Excludedimg Excluded
Packaged Component DeploymentDeploy a packaged component to environments.(Legacy deployment) Deploy a process or component to environments.img Includedimg Includedimg Includedimg Excluded
Persisted Process Property Read and Write AccessYou can view and edit the persisted process properties.img Includedimg Includedimg Includedimg Excluded
Process LibraryProcess publishing and management of published process versions.img Includedimg Includedimg Excludedimg Excluded
Private Cloud ManagementPrivate Cloud configuration and administration.img Includedimg Excludedimg Excludedimg Excluded
SchedulingManage configured process schedules.img Includedimg Includedimg Includedimg Excluded
Trading Partner ManagementCreate and edit trading partner and group information.img Includedimg Includedimg Excludedimg Excluded
User ManagementUsers can assign any role to other users.img Includedimg Excludedimg Excludedimg Excluded
User Management - LimitedUsers can only assign roles that they have. Boomi recommends customers use this variant over the unlimited one above.img Includedimg Excludedimg Excludedimg Excluded
View Audit LogsView audit logs.img Includedimg Excludedimg Excludedimg Excluded
View DataView execution data in process reporting.img Includedimg Includedimg Includedimg Included
View ResultsView and monitor process execution activity and logs, but not execution data.img Includedimg Includedimg Includedimg Included
Data Detective Read AccessRead access to view PII details such as process, data fields, category, connectors, and countries.

Note: This privilege is available only if piiDataInsights is enabled on your account.
img Includedimg Includedimg Excludedimg Excluded
Data Detective Read & Write AccessRead access to view PII details and write access to suggest new data fields and changes to existing data fields.

Note: This privilege is available only if piiDataInsights is enabled on your account.
img Includedimg Excludedimg Excludedimg Excluded
note

The Production Support and Support roles are part of Advanced User Security, which is available in the Enterprise and Enterprise Plus Editions, and as an add-on to the Professional and Professional Plus Editions. To have this functionality enabled, contact your Boomi sales representative.

By default, the user who registered the account is granted the Administrator role which has all privileges. This is the primary, default role that allows full access to Integration. The key privilege differences are in user management and account administration. If a user is not enabled as an administrator, they will not be able to:

  • Change the account name
  • Add, edit or remove users
  • Grant or disable support access
  • Add or remove tracked fields
  • Manage environments
  • Publish connectors via the Connector SDK

Boomi DataHub roles and privileges

To configure roles and privileges specific to Boomi DataHub, navigate to the Hub User Entitlements and Hub Role Entitlements tabs on the User Management page in Settings. These tabs are visible only to users of accounts who have been assigned the MDM - Stewardship Management privilege.

For information about Boomi DataHub roles, privileges and entitlements, see the Boomi DataHub User Management topic. To enable in your account, contact your Boomi representative.

Agentstudio roles and privileges

User Management includes three Agent Garden roles:

  • User
  • Developer
  • Administrator

As an administrator, you can give your users controlled access to the Agent Garden. For example, a developer can create, edit, and test agents, while another user can only use deployed agents in the conversational interface and see a list of all the deployed agents.

For a detailed table on Agent Garden and Agent Designer roles and privileges, refer to Agent Garden. With an Administrator role or a developer role, you can access and utilize the Agent Control Tower. However, the Agent Control Tower works with providers and connecting to providers to manage your agents. Each provider has their own prerequisites that need to be met to utilize the service. For more information, refer to Connecting to providers.

note

By default, all Platform Standard role users have the Agent Garden User role, which allows them to interact with installed agents in the conversational interface. All Platform administrators have the Agent Garden administrator role.

You can assign additional privileges to a user, such as agent development capabilities through the Agent Developer role or create a custom role with granular permissions.

On this Page