Permissions for standalone and Veracode-integrated accounts
User permissions
| Permission | Standalone Administrator | Veracode Platform-integrated Administrator | Manager |
|---|---|---|---|
| View all users in their team | Y | Y | Y |
| Export user progress to CSV | Y | Y | Y |
| View, delete, and export individual user progress to CSV | Y | Y | Y |
| Change username, email, or password | Y | Y | |
| Update participant status | Y | ||
| Disable a user | Y | Y | Y |
| Bulk upload users using identity APIs | Y | Y | |
| Add new users manually | Y | Y | |
| View pending user invites | Y | Y | |
| Uninvite users | Y | Y | |
| Resend invite emails to users | Y | Y | |
| Remove administrator | Y |
Team permissions
| Permission | Standalone Administrator | Veracode Platform-integrated Administrator | Manager |
|---|---|---|---|
| Create a new team and either make the team visible to users, or add the team to default teams | Y | Y | |
| Add or remove a default team | Y | Y | Y |
| Add or remove a public team | Y | Y | |
| Rename a team | Y | Y | Y |
| Assign or remove teams from users | Y | Y | Y |
| Assign a Security Labs Manager to a team | Y | Y | Y |
| View teams | Y | Y | Y |
Campaign permissions
| Permission | Standalone Administrator | Veracode Platform Integrated Administrator | Manager |
|---|---|---|---|
| Customize conclusions for lessons | Y | Y | |
| View assigned campaigns and assignments | Y | Y | Y |
| Create a new campaign manually | Y | Y | Y |
| Create a new campaign via the campaign wizard | Y | Y | Y |
| Update the name and settings of a campaign | Y | Y | Y |
| Export campaign progress | Y | Y | Y |
| View reporting for a campaign | Y | Y | Y |
| Pause and start campaigns | Y | Y | Y |
| Assign or remove a campaign for teams | Y | Y | Y |
| Add assignments to a campaign | Y | Y | Y |
| Update campaign or assignment start and end dates | Y | Y | Y |
| Add or remove lessons (content) from an assignment | Y | Y | Y |
| Create email notifications for incomplete assignment for users and managers | Y | Y | Y |
Reporting permissions
On the Reporting page in Security Labs, these are the permissions:
| Permission | Standalone Administrator | Veracode Platform Integrated Administrator | Manager |
|---|---|---|---|
| View report for a time range | Y | Y | Y |
| View report for a campaign | Y | Y | Y |
| View report for a role | Y | Y | Y |
Module permissions
| Permission | Standalone Administrator | Veracode Platform-integrated Administrator | Manager |
|---|---|---|---|
| View custom content | Y | ||
| Add, edit, or remove custom modules | Y | ||
| Add, edit, and remove lessons in a custom module | Y | ||
| Preview custom lesson content | Y |
Organization permissions
| Permission | Standalone Administrator | Veracode Platform-integrated Administrator | Manager |
|---|---|---|---|
| Enable or disable leaderboards | Y | Y | |
| Set leaderboard lookback time. This permission allows administrators to set whether the leaderboard shows scores based on activity from the last 30 days by default or a different period. | Y | Y | |
| Change an organization name | Y | ||
| Add or remove organization domains | Y | ||
| Change an organization logo | Y | Y | |
| Protect or unprotect an organization | Y | Y | |
| Enable or disable Contact A Teammate through Slack, Teams, and email | Y | Y only for email and Teams | |
| Integrate with Slack | Y | Y | |
| Enable or disable certificates | Y | Y | |
| Enable or disable ratings | Y | Y | |
| Toggle enforce SAML | Y | ||
| Add, edit, or remove SAML gateway | Y | ||
| View, rotate, or disable API credentials | Y | Y |