Skip to content

Roles and permissions

Memberfy's access levels (from visitor to owner), who grants each role, how they combine with each space's visibility and rules, and why a button shows up for one person and not for another.

Everything someone can do in a community comes from the combination of two things:

  1. The person's role in that community: owner, admin, moderator, finance or member. It applies to the whole community.
  2. The rules of each section and each space: who sees it (visibility), who creates content inside it, and what it takes to get in (a plan, a product, a group).

The role says what you can do. The space's rules say where you can do it. This article explains both and how they intersect. Read it before setting up sections and spaces, because every choice you make there depends on it.

The levels, from lowest to highest

LevelWho it isHow they get there
VisitorSomeone who opens the community's address without being signed inJust having the link
MemberSomeone with an account and a profile in the communityInvite, open sign-up or a purchase
FinanceAn accountant, a partner or whoever looks after the moneyGranted by an owner or admin
ModeratorWhoever looks after the conversations and the contentGranted by an owner or admin
AdminWhoever runs the community day to dayGranted by an owner or admin
OwnerThe community's ownerGranted only by another owner (or by the Memberfy team)
SuperAdminThe Memberfy team, for supportNot granted by anyone in the community

The order of power is Owner › Admin › Moderator › Member. Finance sits beside this ladder, not above member: it reads the finances and, outside them, is an ordinary member.

Visitor

Has no account, or isn't signed in. Sees only what is marked Public: public sections and spaces, the community's pricing page (/pricing) and the link to a last-chance offer received by email (/oferta/…). To comment, react, buy or see anything else, they need to sign in.

Member

The default role for anyone who joins. Takes part in the spaces they have access to: reads, comments, reacts, RSVPs to events, enrolls in courses and creates content in the spaces that let any member create. Also sees their own Billing (subscriptions, cards, charges) and their own profile. Doesn't see the Administration area.

Finance

Designed for the accountant or the company's finance person. Opens Monetization and sees everything to do with money: the Dashboard (total revenue, available, retained, pending), the statement, payouts, products, plans, coupons and their usage, fees, and the Payments tab (company and bank details). Changes nothing there: doesn't create products, doesn't edit plans, doesn't request payouts, doesn't change bank details or documents. The exception is subscriptions: in Members › Subscriptions (in the menu, the Members item opens straight on that tab, the only one they see), finance acts on each subscription, like the owner and the admin. See Subscription management. Otherwise, they're a member like any other: they don't moderate or manage members or spaces.

Moderator

Looks after how people get along. Sees all spaces, including private ones, and:

  • edits and deletes other people's posts, comments and images in content, gallery and comment spaces;
  • pins and unpins items at the top of the Feed;
  • creates and edits events and starts the broadcast;
  • organizes members' tags;
  • reviews and decides the moderation queue (through the API for now; the screen is on its way);
  • opens Administration › Members.

Doesn't invite people, change roles, create sections or spaces, or access Settings or Monetization.

Admin

Runs the community: invites and removes members, changes roles (including promoting someone to admin), creates and organizes sections and spaces, configures the community, creates products, plans and coupons, looks after the Business Information and the bank account, and requests payouts. The one thing an admin can't do is act against an owner: they can't remove, demote or edit an owner's profile, and they can't make anyone an owner.

Owner

Can do everything an admin can, and more: delete the community, make someone an owner and change another owner's profile. A community can have more than one owner. An owner can't simply leave the community: "Owner cannot leave the community".

SuperAdmin

The Memberfy team, for support. Bypasses all the rules above. When a SuperAdmin acts in a community, they appear in it with an owner profile. Changing someone's login email or phone number is reserved for SuperAdmins, because that change affects the person in all their communities.

Who grants and removes each role

ActionOwnerAdminModerator, Finance, Member
Invite or create a member, finance or moderator✔✔—
Invite or create an admin✔✔—
Promote someone to admin or moderator✔✔—
Grant the finance role✔✔—
Make someone an owner✔——
Edit, demote or remove an owner✔——
Edit, demote or remove an admin✔✔—
Demote yourself✔✔✔

Two important rules:

  • Nobody joins as owner through an invite. The roles you can grant in an invite and in New Member are admin, moderator, member and finance. To have another owner, invite the person and then, as an owner, promote them.
  • The owner's protection applies everywhere: on the members screen, in the API and when acting on behalf of another profile.

The step-by-step for changing a role is in Manage members.

The rules of each space

Each space (and each section) has three controls that add to the role:

1. Visibility: who sees it

VisibilityWho sees it
PublicAnyone, including visitors
MembersAny member of the community
SubscribersAnyone with any active subscription
PrivateOnly those on the Who gets in list: people in a group, buyers of a product or subscribers of a specific plan

Owners, admins and moderators always see it, whatever the visibility. Finance doesn't: the same rule as a member applies to them.

A section's visibility is the floor for its spaces: a space is never more open than its section. The details are in Visibility and access.

2. Who can create: who publishes inside the space

Each space has a Who can post rule:

OptionWho creates posts, statuses, events, courses and images in the space
AnyoneEveryone who can create that type of item (the default)
StaffOwners, admins and moderators
AdminsOnly owners and admins

This rule is about creating. Commenting and reacting stay open to anyone who sees the space. The finance role counts as a member here: in a "Staff" space, they don't create.

Some item types also have their own minimum role, regardless of the space:

ItemWho can create it
Content post, Feed status, gallery imageAny member (subject to Who can post)
EventOwner, admin and moderator
Course, module and lessonOwner and admin
Call for papersOwner and admin (and whoever the call defines)

3. Participation and moderation

Anyone who sees a space can take part in it: comment, react, RSVP, enroll. The staff can moderate what others have published.

The matrix: role × action

In a space the person can see, with Who can post = Anyone:

ActionVisitorMemberFinanceModeratorAdminOwner
See a public space✔✔✔✔✔✔
See a members, subscribers or private space—if they have accessif they have access✔✔✔
Publish a post or status—✔✔✔✔✔
Comment and react—✔✔✔✔✔
Edit or delete your own items—✔✔✔✔✔
Edit or delete other people's posts and comments———✔✔✔
Pin to the top of the Feed———✔✔✔
Create and edit an event———✔✔✔
Delete an event————✔✔
Create a course————✔✔
Create, edit and delete a section or space————✔✔
Open Members——Subscriptions only✔✔✔
Act on subscriptions (complimentary, discount, cancel, payment link)——✔—✔✔
Invite and change roles————✔✔
See Monetization (balance, statement, sales)——✔—✔✔
Create and edit products, plans and coupons————✔✔
Request and cancel a payout————✔✔
Submit Business Information, documents and bank account————✔✔
Change the community's Settings————✔✔
Delete the community—————✔

One subtle difference: for a Feed status (the short post), only owners and admins edit or delete someone else's status; moderators moderate its comments.

Example combinations

Announcements space: only the staff posts, everyone comments. A Members section or space, Feed or Content module, Who can post = Staff. Every member reads and comments; only moderators, admins and owners post.

Paid course: only Growth plan subscribers see it. A Courses space with Private visibility and the Growth plan under Who gets in › Plans. Non-subscribers see the space with a lock and the label Requires a plan; subscribers get in. See Plans.

An open space where any member posts. Members visibility, Who can post = Anyone. This is the default for a new space.

A public showcase with conversation for members only. A Public Content space: visitors read the articles; to comment, they need to sign in.

Finance sees the balance but doesn't touch plans. Give your accountant the Finance role. They open Monetization, check sales, the statement and payouts and export the CSV, but the create, edit and request payout buttons and the bank forms are read-only ("Read-only view: the community owner or an admin maintains this information.").

The board room. A Private space open only to the Board group. Anyone outside the group doesn't see the space in the menu (groups don't show a lock).

Section, space and what shows up in the menu

A section has its own visibility and access list, with the same options as a space. It isn't just a heading: if a person can't get through the section, they see nothing inside it, even if a space in there is more open.

In the side menu, for people who can't get in:

SituationWhat the person sees
Private space unlocked by a planThe space with a lock: Requires a plan
Private space unlocked by a productThe space with a lock: Requires a purchase
Private space unlocked only by a group, or with nobody on the listNothing: the space doesn't appear
Subscribers space, for someone with no subscriptionNothing: the space doesn't appear
Members space, for a visitorNothing

The lock is there to sell: whoever sees what's locked knows what they get by subscribing or buying.

Per-item permissions

On top of the role and the space's rules, each item (post, comment, event, image) arrives from the server saying what you can do with it: edit, delete, moderate. That's why the same post shows the edit menu to its author and to a moderator, and not to another member. The screen doesn't decide on its own: it shows what the server authorized, and the server checks again when you click.

Common errors and how to fix them

MessageWhat it meansWhat to do
You are not a member of this community.The account has no profile in this communityAsk for an invite, or join through Sign Up if sign-up is open
Only staff members (admin, owner, moderator) can perform this actionThe space is set to Staff, or the action is a moderation actionAsk someone on the staff
Only admins (admin, owner) can perform this actionThe space is set to Admins, or the action is a management action (product, plan, coupon)Ask an admin
Only an owner or a SuperAdmin can remove, demote or change an owner.An admin tried to act on an ownerOnly another owner can do that
Only an owner or a SuperAdmin can make someone an owner.An attempt to promote someone to owner by a non-ownerAsk an owner
Only owners and admins can assign the finance role.A moderator tried to grant the finance roleAsk an admin
You do not have access to this space.The visibility or the access list doesn't include youLook at the lock: subscribe to the plan or buy the product shown

Frequently asked questions

Can I have more than one owner? Yes. Invite the person as an admin and, as an owner, promote them to owner in Members.

Can an admin remove me if I'm the owner? No. No admin action reaches an owner.

Do moderators see the paid spaces? Yes. Owners, admins and moderators see all spaces so they can moderate them. Finance doesn't: the member rule applies to them.

Can finance request a payout? No. They see the balance and payouts; requesting and canceling payouts belongs to owners and admins.

Why doesn't a member see the create event button? Creating events is for moderators and above, in any space. To let members suggest meetups, use a Content space or the Feed.

Does changing someone's role change what they see right away? Yes. On the next screen the person opens, the menu and buttons already follow the new role.

Does the role apply in all of the person's communities? No. The role belongs to the profile in that community. The same person can be owner of one and member of another. See Account and profile.

In the API

The role is profile.role: owner, admin, moderator, finance or member. The community is the one in the X-CommunityId header, and that's where the role is checked. Who can create in a space is space.canCreate: anyone, staff or admins. See X-CommunityId and Sections & Spaces.