Skip to main content
User roles and permissions Control user access to Sequence with role-based permissions designed for finance teams. Roles & permissions prevent accidental changes, support audit trails, and enable workflows across your teams.
Roles and permissions overview

Understanding roles & permissions

Sequence uses role-based access control (RBAC) to manage what users can see and do within your workspace. Each user can be assigned one or more roles, with permissions designed around common finance team structures.
WorkspaceYour Sequence account where roles are managed
RoleA collection of permissions that defines what a user can do
PermissionSpecific access rights to resources and actions
ResourceObjects like customers, invoices, or billing schedules
ActionOperations like create, read, update, delete, or feature-specific actions
Least privilegeUsers start with minimal access and are granted additional permissions as needed

Default user roles

Sequence provides four default roles that mirror common finance team structures. Users can be assigned multiple roles to customize their access level.

Admin

Full access to all resources and actions, including user management and system settings.

Finance User

Complete access to billing operations with limited administrative capabilities.

Sales User

Quote management and customer interaction focused permissions.

View-only

Read-only access across all resources for reporting and analysis.

Permission matrix

The following table shows the specific permissions for each default role across Sequence resources:
Resource or ActionAdminFinance UserSales UserView-only
Customersβœ… Full accessβœ… Full accessβœ… Full accessπŸ‘οΈ View-only
Billing Schedulesβœ… Full accessβœ… Full accessπŸ‘οΈ View-onlyπŸ‘οΈ View-only
Start a scheduleβœ…βœ…βŒβŒ
Products & Pricingβœ… Full accessβœ… Full accessπŸ‘οΈ View-onlyπŸ‘οΈ View-only
Quotesβœ… Full accessπŸ‘οΈ View-onlyβœ… Full accessπŸ‘οΈ View-only
Publish quoteβœ…βŒβœ…βŒ
Accept quoteβœ…βŒβœ…βŒ
Execute quoteβœ…βœ…βœ…βŒ
Invoicesβœ… Full accessβœ… Full accessπŸ‘οΈ View-onlyπŸ‘οΈ View-only
Finalize & send invoiceβœ…βœ…βŒβŒ
Credit Notesβœ… Full accessβœ… Full accessπŸ‘οΈ View-onlyπŸ‘οΈ View-only
Usage & Eventsβœ… Full accessπŸ‘οΈ View-onlyπŸ‘οΈ View-onlyπŸ‘οΈ View-only
Revenue Recognitionβœ… Full accessβœ… Full accessπŸ‘οΈ View-onlyπŸ‘οΈ View-only
Settingsβœ… Full accessπŸ‘οΈ View-onlyπŸ‘οΈ View-onlyπŸ‘οΈ View-only
Invite usersβœ…βœ…βœ…βŒ
Edit usersβœ…βŒβŒβŒ
Integrationsβœ… Full accessπŸ‘οΈ View-onlyπŸ‘οΈ View-onlyπŸ‘οΈ View-only
Discountsβœ… Full accessβœ… Full accessπŸ‘οΈ View-onlyπŸ‘οΈ View-only
Credit Grantsβœ… Full accessβœ… Full accessπŸ‘οΈ View-onlyπŸ‘οΈ View-only
Tax Managementβœ… Full accessβœ… Full accessπŸ‘οΈ View-onlyπŸ‘οΈ View-only
Legend: βœ… = Full CRUD access, πŸ‘οΈ = View-only access, ❌ = No access

Managing user roles

Inviting new users

When inviting new users to your workspace, they are assigned the View-only role by default following the principle of least privilege. You can upgrade their permissions after they join.
1

Navigate to Settings

Go to Settings > Users in your Sequence dashboard
2

Send invitation

Click β€œInvite User” and enter their email address
3

Assign role

Select the appropriate role(s) for the new user
4

Send invite

The user will receive an email invitation to join your workspace

Updating user permissions

Edit user roles
Existing users can be assigned multiple roles to customize their access level. Admin users can modify role assignments at any time.

Security & compliance

Audit trails

All user permission change actions are logged with role information for compliance and security auditing.

Best practices

  • Start with the most restrictive role appropriate for each user’s job function
  • Assign multiple roles only when necessary for cross-functional responsibilities
  • Regularly review and audit user permissions
  • Use View-only role for external stakeholders and reporting needs
  • Finance Users: Day-to-day billing operations, invoice management, revenue recognition
  • Sales Users: Quote creation and management, customer relationship activities
  • Admin: System configuration, user management, integration setup
  • View-only: Executives, analysts, and external auditors
  • Maintain at least two admin users for redundancy
  • Remove access immediately when team members leave
  • Use View-only role for temporary or external access

Frequently asked questions

Yes, users can be assigned multiple roles. Their effective permissions will be the union of all assigned roles.
Custom roles are not available in the initial release. The system is designed to support additional granular permissions in future updates.
Always maintain at least one active admin user. The system will prevent removing admin permissions from the last admin user.