How permissions work
Permissions in waxTable are grouped into roles. Instead of deciding what each individual can touch, you assign a role when you invite a teammate, and waxTable grants the matching access. It's simpler to manage and far less error-prone than per-person rules.
The guiding principle is least privilege: give each person enough to do their job well, and no more. Sensitive areas — billing, team management, workspace settings — should sit with a small number of trusted administrators.
What the areas cover
Working on documents
- Create projects and start new documents.
- Brief Waxe and generate drafts.
- Edit text and structure in the paged editor.
- Use the slash palette and accept or reject Waxe's surgical edits.
Approving and sending
- Review documents submitted for sign-off.
- Approve or reject as part of an approval ladder.
- Send approved documents from your domain and track opens.
Managing the workspace and billing
- Invite, re-role and remove team members.
- Change workspace-wide settings and branding.
- View and manage the plan, top-ups and invoices.
Roles at a glance
Roles stack: higher roles generally include what lower roles can do, plus more. Use this as a guide when deciding who gets what.
| Capability | Drafter | Approver | Administrator |
|---|---|---|---|
| Create projects & draft with Waxe | Yes | Yes | Yes |
| Edit documents | Yes | Yes | Yes |
| Approve & send documents | No | Yes | Yes |
| Manage team & roles | No | No | Yes |
| Manage billing & plan | No | No | Yes |
Choosing the right level
Start with the job
Decide what the person actually needs to do day to day.
Pick the smallest fitting role
Grant the lowest role that covers that job. You can widen access later.
Reserve admin for a few
Keep billing and team management with a small, trusted group.
Review periodically
As responsibilities shift, re-role people so access stays accurate.
Permissions and accountability
Permissions decide what someone can do; the audit log records what they actually did. The two work together: tight roles prevent mistakes, and a clear history makes every action traceable.
Give people exactly the access their work needs — no more, no less — and let the record show the rest.
For the trail of who did what and when, see The audit log.