Roles & Permissions
Give workers, supervisors, and administrators the right level of Labor access
Labor access combines a team role with allowed warehouses. A person needs permission for the feature and access to the warehouse they are expected to manage.
Owners and Admins have broad team access. For everyone else, use custom roles and keep permissions limited to the work they perform.
Labor Permission Groups
| Group | Available Access |
|---|---|
| Labor Jobs | View; Create & Edit; Delete |
| Labor Shifts | View; Create & Edit; Delete |
| Labor Kiosks | View; Create & Edit; Deactivate |
| Labor Performance | View; Manage |
| Time Tracking | View Time Tracking; Manage Time Tracking; Delete Time Tracking |
Read/view access supports monitoring. Create, edit, manage, and delete access should be reserved for people responsible for operational changes.
What Each Group Controls
Labor Jobs
- View job lists and job detail
- Create or edit custom jobs
- Activate, deactivate, or delete jobs when allowed
- Open linked operational records from system jobs when the user can access those records
Labor Shifts
- View schedules and shift detail
- Create and edit shift templates and daily instances
- Assign or unassign workers and managers
- Record or cancel worker call-outs
- Delete templates or instances
Labor Kiosks
- View kiosk devices and online status
- Create kiosks and issue new pairing codes
- Deactivate a kiosk that should no longer accept worker scans
Labor Performance
- View performance dashboards, live throughput, picker statistics, metrics, and exports
- Manage performance actions such as recalculating baselines
Time Tracking
- View worker timelines and worked-time records
- Clock workers in or out, start or end breaks, and change active work
- Add or edit manual activity entries
- Delete completed activity entries
Related Access
Labor managers may also need adjacent permissions:
| Access | Why It May Be Needed |
|---|---|
| Team Members — View | See workers and open member detail |
| Team Members — Create & Edit | Maintain worker accounts and assign the next job |
| User Auth Barcodes — View / Manage | Generate, replace, or revoke kiosk badges |
| Roles — View / Create / Delete | Maintain custom manager roles |
| Team or Warehouse Configuration — Manage | Change Labor settings and warehouse overrides |
| Reports — View | Run, schedule, and export the Activity Entries Report |
| Charges — View / Create | Review or create 3PL labor charges |
Notification Permissions
Notification delivery is controlled separately from page access. Add only the notification types a role should receive:
- Receive Labor Shift Assignment Notifications
- Receive Labor Job Assignment Notifications
- Receive Labor Schedule Change Notifications
- Receive No-Show Alerts
- Receive Labor Job Request Notifications
- Receive Labor Alert Notifications
A manager can have access to Labor without receiving every alert. This is useful when leads supervise different facilities or workflows.
Recommended Role Patterns
Floor Worker
A worker using a paired kiosk does not need manager permissions. They need a valid worker account, an active badge, and the correct warehouse context.
Floor Lead
Common access:
- View Team Members
- View Labor Jobs and Shifts
- View and Manage Time Tracking
- View Labor Performance
- Receive Labor Job Requests and Labor Alerts
- Allowed warehouse access for the supervised facility
Add Create & Edit Labor Jobs or Shifts only if the lead owns those workflows.
Scheduler
Common access:
- View Team Members
- View, Create & Edit Labor Shifts
- Delete Labor Shifts only when responsible for schedule cleanup
- Receive shift assignment and schedule change notifications
- Relevant warehouse access
Labor Administrator
Common access:
- Full Labor Jobs, Shifts, Kiosks, Performance, and Time Tracking access
- Team Member and barcode management
- Labor configuration access
- Relevant notification permissions
- Access to every managed warehouse
Set Up a Custom Role
- Go to Settings → Roles (opens the Cybership dashboard in a new tab).
- Create or open the role.
- Add the minimum Labor and adjacent permissions required.
- Save the role.
- Assign it to the team member.
- Set their allowed warehouses.
- Sign in as a test member or review with the user to confirm the intended pages and actions are available.
Warehouse Access
Use Settings → Team Members (opens the Cybership dashboard in a new tab), open the member, then select Manage User → Manage Allowed Warehouses to control facility access.
When a user reports missing workers, jobs, shifts, or kiosks, check both:
- Does their role allow the feature?
- Are they allowed to access the selected warehouse?
Worker Badge Access
Badge actions are available from the worker's member page. Grant barcode viewing and management only to people who issue credentials. Revoke an old badge when replacing it; do not leave duplicate active credentials in circulation.