Roles & Permissions
CRYMBO Platform uses a granular, role-based permissions system to control access to features and data.
Default Roles
| Role | Description | Key Permissions |
|---|---|---|
| Super Admin | Full platform access | All permissions including institution settings |
| Admin | Institution management | User management, settings, reporting |
| Compliance Officer | Compliance workflows | KYC/KYB review, risk scoring, Travel Rule, audit logs |
| Financial Controller | Financial operations | Wallets, balances, payments, liquidity management |
| Trader | Trading operations | Execute trades, view positions, manage orders |
| Viewer | Read-only access | View dashboards, reports (no write operations) |
| API User | Programmatic access | API-scoped permissions based on configuration |
Custom Roles
Institutions can create custom roles with specific permission combinations. Custom roles are defined in the Admin Console.
Permission Categories
- User Management — Create, edit, deactivate users
- Compliance — Review KYC, manage risk, access Travel Rule data
- Wallets — Create, manage, and view wallet balances
- Payments — Initiate, approve, and review payment transactions
- Trading — Execute and manage trades
- Reporting — Generate and export reports
- Settings — Modify institution-level configurations
- API — Manage API keys and webhook configurations