Business operations concept · updated August 9, 2026

Role-Based Access Control

Role-based access control is a permission model where what a person can view or do is determined by their assigned role rather than granted individually.

Example

Everyone assigned the "billing" role can view and edit invoices, without an admin having to grant that specific permission to each person one at a time.

Why it matters

Assigning access through a role instead of individually makes onboarding, offboarding, and auditing who can do what dramatically simpler at any team size.

Limits and cautions

Roles that are too broad or too numerous can undermine the model's simplicity, recreating the same complexity it was meant to avoid.

Relevance to Stelaah

Stelaah's workspace roles determine what a member can view, edit, or approve across the connected modules they have access to.

This connection describes product intent, not a guarantee that every plan or workflow supports every related capability.