SettingsGroup Management

Group Management

Groups define what permissions users have within SRExpert. Assign users to groups to control their access level across the platform.

Group Management Overview
Groups Management page showing all permission groups

Accessing Group Management

  1. Click Settings in the sidebar
  2. Expand Users section
  3. Select Group Management

Groups Overview

The Groups Management page displays all permission groups:

ColumnDescription
NameGroup display name
IDSystem identifier for the group
MembersNumber of users in the group
PermissionsNumber of permissions assigned
DescriptionBrief description of the group’s purpose

Default Groups

SRExpert comes with a default group:

  • Billing Managers: Access to billing, invoices, payment methods, and subscription management. Only the tenant owner has this by default.

Creating a New Group

  1. Click the Create Group button
  2. Fill in the group details:
    • Group ID: System name (lowercase, no spaces, used internally)
    • Display Name: Human-readable name shown in the UI
    • Description: Brief description of the group’s purpose
  3. Configure permissions for each category
  4. Click Create Group
Create New Group Modal
Create New Group form with permission categories

Permission Categories

Permissions are organized into the following categories:

Clusters

Control access to cluster management features:

  • Read: View cluster information, namespaces, and nodes
  • Write: Create and modify cluster configurations
  • Delete: Remove clusters and related resources

Workloads

Control access to workload resources:

  • Read: View pods, deployments, services, and other workloads
  • Write: Create and modify workloads
  • Delete: Remove workload resources

Security

Control access to security features:

  • Read: View security policies and compliance reports
  • Write: Create and modify security policies
  • Delete: Remove security configurations

Metrics & Monitoring

Control access to monitoring features:

  • Read: View metrics, dashboards, and monitoring data
  • Write: Configure monitoring settings
  • Delete: Remove monitoring configurations

Alerts

Control access to alerting system:

  • Read: View alerts and notifications
  • Write: Create and modify alert rules
  • Delete: Remove alert configurations

Users & Groups

Control access to user management:

  • Read: View team members and groups
  • Write: Add and modify users and groups
  • Delete: Remove users and groups

Billing & Subscriptions

Control access to billing features:

  • Read: View invoices and subscription details
  • Write: Modify payment methods and subscription
  • Delete: Cancel subscriptions

System Administration

Control access to system settings:

  • Read: View system configurations
  • Write: Modify system settings
  • Delete: Reset system configurations

AI & Chat

Control access to AI assistant features:

  • Read: Use AI chat and view suggestions
  • Write: Configure AI settings
  • Delete: Clear AI conversation history

Permission Levels

Each category supports three permission levels:

LevelDescription
ReadView-only access to the feature
WriteCreate and modify resources
DeleteRemove resources permanently

Use Select All to quickly grant all permissions in a category.

Editing a Group

  1. Find the group in the Groups list
  2. Click the Edit button
  3. Modify group details or permissions
  4. Click Save Changes

Deleting a Group

  1. Find the group in the Groups list
  2. Click the Delete button
  3. Confirm the deletion

Warning: Before deleting a group, reassign its members to another group to maintain their access.

Best Practices

  • Principle of Least Privilege: Grant only the permissions users need to perform their tasks
  • Use Descriptive Names: Make group names clear (e.g., “DevOps Team”, “Billing Admins”)
  • Regular Audits: Periodically review group memberships and permissions
  • Separate Concerns: Create distinct groups for different roles (developers, operators, billing)

Group Limits by Plan

PlanGroups Included
Starter (Free)1 group
Professional5 groups
Business20 groups
EnterpriseUnlimited