VarunaFeaturesRole-Based Access Control
FEATURERole-Based Access Control

The right access,
for the right people.

Control exactly who can see, edit, create, or delete across every workspace and feature — with five built-in role levels, granular custom permissions, instant revocation, and a full audit trail for every change.

Free forever
Setup in 20 min
No credit card
GDPR compliant
VARUNA · ROLE-BASED ACCESS CONTROL
5
role types
0
unauthorised access incidents
100%
audit trail coverage
AdminFull access · AnjaliAdmin
ManagerTeam + reports · RaviManager
MemberOwn tasks only · MeeraMember
ViewerRead only · ExternalViewer
0 unauthorised access incidents · Full audit trail active
5
role types
0
unauthorised access incidents
100%
audit trail coverage
15 min
to configure permissions
How It Works

Enterprise-grade access control, set up in 15 minutes

1

Choose from 5 built-in role types

Varuna ships with five pre-configured roles: Admin, Manager, Member, Viewer, and External Guest. Each role has a well-defined permission set that covers 95% of organisational needs out of the box, with no configuration required.

Ready in minutes
2

Assign roles per workspace

The same person can hold different roles in different workspaces. Ravi might be an Admin in the Engineering workspace and a Viewer in the Finance workspace. Role assignments are fully independent across workspaces.

Per-workspace role assignment
3

Customise permissions if needed

On Business and Enterprise plans, you can create custom roles with granular permission sets — controlling access to specific features, data types, and actions at the field level. All changes take effect immediately.

Custom roles on Business plan
4

Every access decision is logged

Varuna maintains a complete audit trail of all permission changes — who changed what, when, and why. Role assignments, revocations, and custom permission modifications are all logged for compliance and security review.

Full audit trail of all changes
Capabilities

Every access dimension controlled and audited

🛡️

Five standard role levels

Admin: full control. Manager: workspace data and team reports. Member: own tasks and team workspace. Viewer: read-only across assigned content. External Guest: limited access to specific items only. Most organisations need nothing beyond these five.

Covers 95% of use cases
🔐

Feature-level permission control

On Business and Enterprise plans, granular permissions can be set at the feature level: who can create tasks, who can view analytics, who can export data, who can manage integrations, and who can invite members.

Granular feature permissions
👁️

Data visibility scoping

Control not just what users can do, but what data they can see. Scope visibility by workspace, project, tag, or assignee. External clients see only their project. Junior team members see only their team's workspace.

Read-scope control
🔄

Role change propagation

When you change a role, the new permissions apply instantly across all active sessions. No need to log out and back in. Revoked access takes effect immediately — critical for offboarding security.

Instant permission propagation
📋

Permission audit log

Every permission change is logged: who made the change, which role was modified, what the previous and new settings were, and when. Exportable for compliance audits and security reviews.

SOC 2 compliant audit trail
🤝

External collaborator management

Invite clients, contractors, and partners as External Guests with tightly scoped access — one workspace, specific projects, read-only by default. Guest access expires automatically after a configurable period.

Auto-expiring guest access
Before vs After

What access control looks like when it actually works

MetricWithout VarunaWith Varuna
Access controlAll-or-nothing admin vs everyone5 granular role levels
Client data separationManual folder managementWorkspace isolation enforced by permissions
Permission changesRequires app restart to applyInstant propagation to all sessions
Offboarding securityManual deactivation, often delayedOne-click revoke, takes effect instantly
Audit trailNot availableFull log of every permission change
External guest controlSame access as employeesScoped, expiring guest access
Custom rolesNot configurableBuild custom roles on Business plan
FAQ

Questions about role-based access control

Get Started

Secure your workspace in 15 minutes.

Set up granular access control for every team member, client, and external collaborator — with five built-in roles ready to use and a full audit trail from day one.

Free foreverNo credit cardSetup in 20 minGDPR compliant