Roles Overview

Understanding admin roles and permissions in SSAdmin

Overview

SSAdmin uses role-based access control (RBAC) to manage what different administrators can see and do within the system. Understanding your role helps you know what features are available to you.

Admin Roles

SSAdmin has two primary admin roles, each with specific responsibilities and access levels:

HQ Admin (Headquarters Admin)

High-level administrative access for headquarters operations.

Responsibilities:

  • Cross-campus coordination
  • High-level reporting
  • Policy implementation
  • Quality assurance
  • User management across campuses

Access Level:

  • Access to all features across all campuses
  • Backend settings access
  • Can manage Campus Admin accounts
  • Full reporting capabilities
  • Can view, create, edit, and delete records

Campus Admin

Administrative access scoped to a specific campus.

Responsibilities:

  • Campus student management
  • Local class scheduling
  • Campus financial operations
  • Campus-specific reporting

Access Level:

  • Access limited to assigned campus data
  • Can manage students, classes, and payments for their campus
  • Cannot access other campus data
  • Limited backend access

Role Permissions Matrix

FeatureHQ AdminCampus Admin
View All StudentsYesCampus Only
Create StudentsYesYes
Edit StudentsYesYes
Delete StudentsYesNo
View PaymentsYesCampus Only
Process PaymentsYesYes
Manage ClassesYesCampus Only
View ReportsYesCampus Only
Backend AccessYesLimited
Admin ManagementYesNo

Understanding Your Access

What You Can See

Your role determines which menu items appear in the sidebar:

  • HQ Admin sees all menu sections across all campuses
  • Campus Admin sees features relevant to their assigned campus only

What You Can Do

Actions available to you depend on your role:

  • Create - Adding new records (students, classes, payments)
  • Read - Viewing existing records
  • Update - Editing existing records
  • Delete - Removing records (usually restricted to HQ Admin)

Data Scope

Your data access is scoped based on:

  • Campus - Which campus locations you can access
  • Level - Which academic levels you can view
  • Function - Which features you can use

Attempting to access restricted features will result in an access denied error. Contact your HQ Admin if you need additional permissions.

HQ Admin vs Campus Admin

Key Differences

AspectHQ AdminCampus Admin
Data ScopeAll campusesSingle campus
User ManagementCan manage Campus AdminsCannot manage admins
Delete PermissionsFull delete accessCannot delete records
Backend SettingsFull accessLimited access
ReportingCross-campus reportsCampus-specific reports

When to Use Each Role

HQ Admin is appropriate for:

  • Headquarters staff
  • Regional coordinators
  • System administrators
  • Those needing cross-campus visibility

Campus Admin is appropriate for:

  • Campus coordinators
  • Local administrative staff
  • Those managing single campus operations
  • Staff who only need their campus data

Requesting Role Changes

If you need different access levels:

  1. Identify the Need - Determine what additional access you require
  2. Contact HQ Admin - Reach out to your HQ Admin
  3. Provide Justification - Explain why the access is needed
  4. Wait for Approval - Role changes require administrative approval

Best Practices

For All Roles

  • Only access data necessary for your work
  • Log out when leaving your computer unattended
  • Report any suspicious activity or access issues
  • Keep your login credentials secure

For HQ Admins

  • Regularly review Campus Admin access
  • Remove access for departed staff promptly
  • Audit sensitive operations periodically
  • Document significant changes or decisions

For Campus Admins

  • Focus on your assigned campus operations
  • Request HQ Admin assistance for cross-campus needs
  • Report any access issues promptly
  • Keep records accurate and up-to-date

If you're unsure about your role's capabilities, try accessing the feature. If it's not available, you'll receive a clear message that you don't have permission.