Skip to content

Roles and permissions

Sicket uses roles to decide what each user can view and manage.

Organization admins manage the organization account.

They can usually:

  • manage buildings
  • manage users
  • invite tenants and landlords
  • review QR self-join requests
  • manage billing and plan settings
  • view analytics
  • create staff content such as announcements, news posts, banners, and knowledge base entries

Landlords manage assigned buildings.

They can usually:

  • view assigned buildings
  • handle tickets for assigned buildings
  • review join requests for assigned buildings
  • invite tenants where allowed
  • create building communications where allowed
  • view analytics for assigned buildings

Tenants use Sicket for their own building.

They can usually:

  • create tickets
  • view their own personal tickets
  • view community tickets in their building
  • read building announcements
  • read building news posts
  • search the knowledge base
  • manage their own account settings

Platform admins manage Sicket itself. They are not part of normal building operations and should not receive tenant-facing operational notifications.

The backend enforces permissions. The dashboard may hide buttons for clarity, but hidden buttons are not the security boundary.