Organization Administrators
In the organization management console, Super Admins can assign organization management permissions to members through Permission Management.
HAP uses permission groups to combine different administrative permissions and assign them to specific members. Super Admins can also configure default feature permissions for all organization members to support different administrative responsibilities and access requirements.

Permission Groups
Permission groups allow a set of administrative permissions to be assigned to multiple members. HAP provides a Super Admin permission group by default and also supports custom permission groups.
Super Admin
Super Admins have full administrative permissions for the organization, and these permissions cannot be modified.
Super Admins can:
- Create, edit, and delete permission groups
- Add or remove members from permission groups
- Configure administrative permissions and feature permissions for permission groups
- Manage other organization settings
Super Admin permissions are not affected by the configuration of other permission groups.
Custom Permission Groups
Super Admins can create custom permission groups based on different administrative responsibilities. For example:
- Organization Admin: Manages users, departments, reporting relationships, and other organization information
- App Admin: Manages apps and related resources
- Integration Admin: Manages integrations, API connections, and related settings
Administrative permissions and feature permissions can be configured separately for each custom permission group and adjusted at any time.
Create a Permission Group
Go to Orga Admin > Organization > Permission Management and click + Permission Group in the upper-right corner.
- Enter a name for the permission group.
- On the Manaage Permission tab, select the management modules and specific permissions to grant.
- Switch to Feature Permission and configure which features members can use.
- To allow members to manage membership in the permission group, select Allow Members to Manage Others.
- Click Create to finish.

Administrative Permissions and Feature Permissions
When creating a permission group, you can configure two types of permissions separately:
Administrative Permissions: Control which management modules and operations members can access, such as user, organization, app, and integration management.
Feature Permissions: Control whether members can use specific HAP features, including:
-
App Development
- Create apps
- Delete apps
- Create API connections
- Create sync tasks
- Create plugins
-
Mingo AI
- App planning and building
- Data queries
- Other app assistance features: Mingo AI capabilities other than app planning and building and data queries, including creating worksheets, creating records, optimizing names and icons, generating sample data, and more
-
Global Search (Search Records)
Allow Members to Manage Others
- Enabled: Members in the permission group can add new members to or remove existing members from the group.
- Disabled: Only Super Admins can change group membership. Other members have read-only access.

3. Manage Permission Group Members
The permission group list displays the members of each group. Click a permission group name to open its configuration panel, then use Add or Remove to manage group members.

4. Edit or Delete a Permission Group
Click a permission group name to open its configuration panel. Switch to the Permissions tab and click Edit to update the group configuration.
- Edit Permissions: Modify the group's administrative permissions, feature permissions, and other settings.
- Delete: Delete a custom permission group that is no longer needed. After a permission group is deleted, its members lose any permissions granted through that group.

The Super Admin permission group cannot be edited or deleted.
5. Default Feature for All Members
Default Feature for All Members determines which feature permissions are available to organization members by default.
When a feature is enabled, all organization members can use it by default. When it is disabled, only members who have been granted access through the corresponding permission groups can use the feature.
Super Admins can click Settings to configure the default feature permissions for all members.

6. Request to Join a Permission Group
If Allow Permission Requests is enabled for the organization, members can go to Profile Picture > My Org > Org Admin to open the organization management page. Available permission groups are displayed, and members can select a group to request access.

Super Admins can review requests under Permission Requests and select Grant Access or Reject.

Permission Group Logs
Administrators with the required log permissions can go to Org Admin > Log to view permission group activity, including group creation, configuration changes, and membership changes.

Was this document helpful?