Roles are fundamental to managing security and permissions within the platform. They define which actions and functionalities users can perform based on their responsibilities within a Project.
This section focuses on managing these roles, which control how users interact with AI solutions.
Roles are created and edited within each Project. To achieve this, you must enter the Console. On the left side of the screen, you can find the Console Menu. In this menu, click on Roles below Project Options.

Role Description: Each Project has the following three default roles that allow different levels of access and functions:
Role Origin: It takes the value System for the roles that are defined by default when creating the Project. If you create a new role, the value will be user-defined.
Role Type: Roles are categorized as "Backend" or "Frontend". Backend roles implicitly grant Frontend access.
Permissions: Allows defining which AI solutions are available to each role with the "Frontend" value in the Role Type column, ensuring that members who are assigned these roles can access only the configured AI solutions, from the Run section and Workspace.
User Reference: Each role displays a quick reference to the users assigned to it. Clicking on the "USERS" column reveals the list of assigned users.
System-Defined Roles: Backend roles are system-defined. All roles you create will be "Frontend" roles.
Default Roles: Every new Project starts with three system-defined roles.
Creating New Roles: To create a new role, follow these steps:
- Select Project: In the Project Dynamic Combo Box, select the Project you want to work with.
- Navigate to Roles: Navigate to the "Roles" section below Project Options.
- Create New: Click on the "CREATE NEW" button.
Role Details: When creating a new role, provide a description (which also acts as the name) and optionally an "External Id". The "External Id" defaults to the internal identifier of the role but can be used to map the role to a role in another IDP (like Microsoft Entra ID). You can update the "External Id" later by editing the role.
Editing and Deleting Roles: User-defined roles can be edited (name/description, External Id) and deleted, but only if the role is not assigned to any user.
List of AI solutions: By clicking on PERMISSIONS, a window opens where you can edit the permissions of a role.

Click on the ADD PERMISSION button to open the list of available AI solutions.
Select the AI solutions you want to include, using the corresponding checkboxes, and confirm by clicking ADD ASSISTANT.

Once confirmed, the selected AI solutions are displayed in the role permissions list.

Deleting AI solutions: To remove an AI solution from the list, use the "DELETE" action at the end of each item.
AI solutions Visibility: Frontend users with a specific role assigned will only see the AI solutions included in that role when accessing Agentic Hub - Discover.
Multiple Roles: If a user has multiple Frontend roles assigned, they will see the combined list of AI solutions included in all their assigned roles, even if AI solutions are repeated across roles.
Backend role: Users who have a Backend role can see all the Project's AI solutions in the Agentic Hub - Discover. This is because Backend roles imply full access to the Agentic Hub.