Aller au contenu

Digital asset management

Decide who can do what, at every level

Access is set in two places. A file or a collection carries an access level, which decides who can see it at all. A person carries a role, which decides what they can do with the things they can see — and each permission in that role can be narrowed further, to particular access levels or to that person's own content.

A library role in LightRocket: the Contributor role and its eight permissions — adding to, editing and viewing collections, and deleting, downloading, editing, uploading and viewing assets — each marked unrestricted, limited to specific access levels, or limited to the holder’s own content, and each either delegable in a workspace or notA library role in LightRocket: the Contributor role and its eight permissions — adding to, editing and viewing collections, and deleting, downloading, editing, uploading and viewing assets — each marked unrestricted, limited to specific access levels, or limited to the holder’s own content, and each either delegable in a workspace or not

Permissions matrix

Library · Global communications

Scroll sideways for all four roles

Which permissions each library role holds, as an example
PermissionViewerContributorEditorManager
View assetsHeld, unrestrictedHeld, unrestrictedHeld, unrestrictedHeld, unrestricted
View collectionsHeld, unrestrictedHeld, unrestrictedHeld, unrestrictedHeld, unrestricted
Download assetsNot heldHeld, unrestrictedHeld, unrestrictedHeld, unrestricted
Upload assetsNot heldHeld, unrestrictedHeld, unrestrictedHeld, unrestricted
Edit assetsNot heldHeld, but only for their own contentHeld, unrestrictedHeld, unrestricted
Delete assetsNot heldHeld, but only for their own contentHeld, unrestrictedHeld, unrestricted

“Own” is a permission narrowed to that person’s own content. Any permission can also be limited to particular access levels rather than the whole library.

Illustrative example

Access levels on files and collections

Set on the thing itself, so it holds wherever that thing turns up — in a search, in a workspace, in somebody else's collection.

  • 01

    Private

    You, and anyone you add by name. The default for anything still being worked on.

  • 02

    Library

    Everyone who holds a role in that library, at whatever their role permits them to do.

  • 03

    Public

    Anyone with the link, whether or not they have an account. Deliberately the loudest of the three to choose.

  • 04

    Whatever else you need

    A level for one region, one partner, one board. Add as many as your organisation actually uses and set them the same way.

Library roles

Roles that match your organisation, not a template

Every permission is a switch: view assets, view collections, download, upload, edit, delete. A role is whichever switches you turn on, and you build as many roles as the work needs.

  • Build a role from any combination of permissions
  • Narrow any permission to particular access levels, or to a person’s own content
  • Roles are set per library, so one person can be a manager in one and a viewer in the next
  • Change what a role allows, and everyone holding it changes with it

Next step

We’d love to explain more…

Still got questions? Curious to see LightRocket in action? Want to know more about pricing?

We’re always happy to show off our system and, yes, we’ll even help out with discounts and pricing.

Pour une meilleure expérience sur LightRocket, nous vous recommandons d'accepter tous les cookies. Cependant, nous respectons votre vie privée et vous pouvez choisir parmi les options ci-dessous :

Ces cookies sont indispensables pour utiliser LightRocket.

Ces cookies nous aident à comprendre votre comportement sur le site et sont utilisés uniquement à des fins d'analyse et de recherche.

Ces cookies sont partagés avec des tiers de confiance pour une expérience publicitaire personnalisée.