GCXONEDocumentation

User Management Setup

Updated 16 August 2026Getting startedDownload PDFSuggest a changeGet help
On this page
  1. Overview
  2. Review Default Roles
  3. Create or Modify Roles
  4. Invite Users

Overview

GCXONE uses a Role-Based Access Control (RBAC) system to manage user permissions across the platform. Access is defined through roles, module privileges, and entity assignments.

Key Concept Privileges determine WHAT a user can do. Entity access determines WHICH customers, sites, and devices they can see. These are two separate things.

Review Default Roles

GCXONE provides predefined roles to simplify initial configuration:

RoleAccess Level
Super AdminFull platform access — complete control over all modules; users; roles; and settings
AdminAdministrative access — can manage users; roles; configuration; and reports; but not billing
OperatorOperational access — can view and manage configuration and reports; but cannot delete or administer users/roles
InstallerField technician access — can manage devices; sensors; and network configuration
UserRead-only access to dashboards; configuration; and reports

These roles can be used directly or customized depending on your operational requirements.

Create or Modify Roles

Navigate to Settings → Roles → Configure New Role

The role creation wizard walks you through 4 steps:

  • Role Info — Name, description, and optional default role toggle
  • Users — Select which users belong to this role
  • Privileges — Enable or disable access per module (Dashboard, Video Viewer, Alarm Manager, Map, and more)
  • Entity Assignment — Choose which customers, sites, and devices users of this role can access

Enable Include Children when selecting entities so any new devices or sensors added later are automatically accessible — no manual updates needed.

Invite Users

Navigate to Settings → Users and invite users by email.

During the invitation process:

  • A role is assigned to the user
  • Module privileges are inherited from the assigned role
  • Entity access is applied based on role configuration

After invitation, users receive an email to activate their account.

Was this page helpful?

Thank you — your feedback goes to the team that owns this page.