These permissions make up the Automation group within a role's permissions, and they control access to workflows and group promotion plans. To review or edit them, go to Settings & Tools (Cog icon in the tool-bar) > Security > Roles, open a role, and select the Permissions tab. You'll find these options under the Automation section.
Access to a workflow is based on both the permissions the user has and how they are connected to the workflow.
Workflow roles
First, we'll look at access based solely on whether the user is an assignee on a workflow task or a workflow manager. A user can have one of the following roles within a workflow.
Assignee
Can complete tasks assigned to them.
Can only see the Assignments tab and Notes tab within a workflow.
Cannot see the workflow Editor, People, or Logs tab.
The workflows listing only shows the assignments they're responsible for.
The Automation > Workflows menu item in the left navigation is hidden.
Can see the queues menu items, but the listing is limited to their currently assigned tasks.
Workflow Manager
Can only see workflows they are a manager for.
Can add, edit, and delete tasks within a workflow.
Can see the Editor, People, Assignments, Logs, and Notes tabs.
Cannot delete the workflow or add other workflow managers.
Has full access to workflow assignments, including editing assignments for others.
Receives reassignment requests.
Workflows
If a user is not associated with a workflow as an assignee or manager, then their permissions determine whether they have access.
Full Read Workflows
Has read-only access to all workflows and processes, meaning they can see who is in the queue.
Has read-only access to the list of tasks.
Full Write Workflows
Users with this permission also have the Full Read Workflows permission.
Can add, edit, and delete all workflows, processes, and tasks.
Can add and remove workflow admins and process managers.
Promotions
Full Write Promotions
Can add, edit, delete, and execute group promotion plans.
