Create roles
- In Spott, go to Settings.
- In the Admin section, click Security.

- Open existing roles
- Create new ones with the New role button

Permissions people go looking for
Most permissions do what their name says. These come up often, because the action they gate simply disappears or fails rather than explaining itself:- AI assistant connection. Connecting Spott to Claude or ChatGPT is its own
permission, separate from the record access the connector inherits. Without it a user
completes the sign-in normally and then every request comes back as
MCP_ACCESS_DENIED. See Spott MCP. - Delete Job. Without it, the delete option on a job is greyed out rather than hidden, so it looks like a fault.
- Enrichment. Switching it off for a role is the only way to control who spends credits, since the balance is a single pool with no per-user limit. See profile enrichment.
- Merging records. Merging two candidates, contacts, or companies needs its own permission, and without it the merge fails at the last step.
- Company hierarchies. Creating and editing a company hierarchy is its own permission, so you can let a team read a client group’s structure without letting them reorganize it. On a large account the tree is shared reference data, and one person reparenting an entity changes what everyone else sees.
Add a user
- In Spott, go to Settings.
- In the Admin section, click Users.
- Invite the person by email address and give them a role.
Removing a user deactivates them rather than deleting the account, so their
historical activity stays attributed to them.
Assign roles to users
- In Spott, go to Settings.
- In the Admin section, click Users.

Admin is a built-in role with full permissions. It cannot be deleted or reduced,
and there must always be at least one admin in the workspace.