---
title: Roles & Permissions
description: Reference for Capawesome Cloud organization roles and permissions — what Owner, Admin, Billing, Member, and Viewer can do.
---

# Roles & Permissions

Capawesome Cloud provides several predefined roles you can assign to [members](memberships.md):

- **Owner** — full access to all resources and settings.
- **Admin** — can manage users and settings, but cannot delete the organization.
- **Billing** — can manage billing and subscription settings.
- **Member** — can access shared app resources, with limited organization permissions.
- **Viewer** — can view apps and app resources.

## Permissions matrix

| Action | Owner | Admin | Billing | Member | Viewer |
| --- | :---: | :---: | :---: | :---: | :---: |
| See and edit billing and subscription | ✓ | | ✓ | | |
| Manage organization ownership | ✓ | | | | |
| Manage organization settings | ✓ | ✓ | | | |
| Create and manage apps | ✓ | ✓ | | | |
| Create and manage invitations | ✓ | ✓ | | | |
| Create and manage members | ✓ | ✓ | | | |
| Create and manage teams | ✓ | ✓ | | | |
| View apps and app resources | ✓ | ✓ | | ✓ | ✓ |
| Create and manage app builds | ✓ | ✓ | | ✓ | |
| Create and manage app certificates | ✓ | ✓ | | ✓ | |
| Create and manage app channels | ✓ | ✓ | | ✓ | |
| Create and manage app deployments | ✓ | ✓ | | ✓ | |
| Create and manage app destinations | ✓ | ✓ | | ✓ | |
| Create and manage app devices | ✓ | ✓ | | ✓ | |
| Create and manage app environments | ✓ | ✓ | | ✓ | |
| Create and manage app webhooks | ✓ | ✓ | | ✓ | |
| Use Ask AI on failed builds and deployments | ✓ | ✓ | | ✓ | |
| Create and manage license keys | ✓ | ✓ | | | |
| View and copy license keys | ✓ | ✓ | | ✓ | |
| Subscribe to usage-limit notifications | ✓ | ✓ | | | |
| Delete an organization | ✓ | | | | |

Assign a role when you [invite a member](memberships.md), and change it later from the Members page.
