Skip to main content

Creating and assigning roles


Roles control what each user can do — which areas of Checkmate they can access and which actions they can take. A role is a bundle of permissions — you select which actions a role allows, then assign it to the appropriate users.

For controlling which candidates a user can see, see Teams.

  1. While signed in to your Checkmate account, click your profile icon in the top-right corner of the screen.

    01_creating_and_assigning_roles

  2. Click User Access.

    02_creating_and_assigning_roles

  3. Click the Roles tab to create and manage roles and assign them to users.

    03_creating_and_assigning_roles

  4. The Roles tab lists your existing roles. All accounts include an Administrator role by default — it cannot be deleted and has all permissions enabled.

    04_creating_and_assigning_roles

  5. Click the + Add button to create a new role.

    05_creating_and_assigning_roles

  6. Click the Edit icon to edit the role name.

    06_creating_and_assigning_roles

  7. Toggle on the permissions this role requires and leave the rest disabled.

07_creating_and_assigning_roles

The available permissions are:

  • Manage renewals — gives users full access to the renewals dashboard, including setting up renewal configurations, managing employees, and performing bulk renewal actions such as approving or cancelling renewals in bulk.

  • Manage company details — a broad administrative permission covering company settings, user management (including inviting and removing users), roles and teams, SSO setup, and audit logs. Typically reserved for administrators.

  • View candidates — allows users to see all candidates and their profile details within their assigned teams. Without it, users can only see candidates they created themselves.

  • Create candidates — allows users to create and manage candidates, including importing in bulk, editing, tagging, archiving, and adding checks.

  • View checks results — allows users to open and read completed results on screen for standard, non-sensitive check types.

  • Download checks results — allows users to download result files for standard, non-sensitive check types. This is a separate permission from View checks results, so view access can be granted without also granting download access.

  • View ID results — allows users to download candidate identity documents from the Checks tab.

  • View sensitive checks results — controls access to results for check types flagged as sensitive, such as police checks. Users without this permission cannot view or download those results, regardless of their other permissions.

  • Manage brands — allows users to create, edit, and delete brands. Brands control the styling, communications, and reminder settings used when candidates are invited to complete their checks.

  • Manage questionnaires — allows users to create, edit, and archive the questionnaires used in reference checks and candidate questionnaires.

  • Manage check bundles — allows users to create, edit, and delete check bundles. Bundles are pre-configured groups of checks that can be launched for a candidate in a single step.

  • Manage billing details — allows users to view and edit your billing information and view billing reports.

  • Manage integrations — allows users to view and update the configuration for your ATS and HR platform integrations, as well as access webhook logs.

  • Access teams — by default, users can only see candidates, checks, and related data within their assigned teams. This permission overrides that, giving the user visibility across all teams in your organisation.

  • Manage tags — allows users to create and manage tags, which can be used to organise and filter candidates across your account.

  • Manage email templates — allows users to create, edit, and delete the email templates used when communicating with candidates and referees. All users can read existing templates, but this permission is required to make changes.

  1. Once you've enabled the required permissions, click Save.

    08_creating_and_assigning_roles

  2. Click the Users tab to assign users to the role.

    09_creating_and_assigning_roles

  3. Click the Select user… dropdown and select a user to assign to the role.

    10_creating_and_assigning_roles

  4. Click the Add button to assign the role to the user.

    11_creating_and_assigning_roles

  5. The user will appear in the role's user list. Repeat this step for each user you want to assign to the role.

    12_creating_and_assigning_roles

  6. To remove a user, click the Delete icon next to the user's email.

    13_creating_and_assigning_roles

  7. Click Save to apply your changes.

14_creating_and_assigning_roles
Did this answer your question?