ドキュメント

サポート

User types, roles, and permissions

Learn about user types, roles, and permissions in the Unity Dashboard
読み終わるまでの所要時間 5 分最終更新 19時間前

To control access to an organization and its projects, you assign user types and roles to organization members and project members:
  • User types are the member's default permissions in the organization or project.
  • User roles are the member's additional permissions in the organization or project.
Unity ID user types and roles include inheritance. Users who are added to an organization with a non-guest user type inherit their user type at the project level. For example, a user with the Manager user type in their organization also has Manager-level access to all projects within that organization. You can use roles to assign different permissions to users.

User types and roles

Users are assigned permissions to a seat at an organizational level. These roles include Owner (billable), Manager, User, and Guest. Project roles are assigned permissions to a seat that are specific to projects. For example, a Unity Pro user could be a Viewer for one project and a Contributor in a different project.

Overview of user types

The table below gives a high-level overview of the different user types.

User type

Summary

GuestGuests have limited access to organizations or projects they're explicitly added to. For organization-level permissions, refer to the Guest column in Organization-level access.
UserUsers can view organization members, organization settings, and projects, but not finance or billing. On projects they align with Project User baseline capabilities (view environments and settings, view services, and limited service-level write access where applicable). Refer to Organization-level access and Project-level access.
ManagerManagers can manage most of the organization and its projects, for example, members, settings, policies, projects, apps, and environments. Managers can't manage billing or payment details. Refer to Organization-level access (Organization Manager) and Project-level access (Project Manager).
OwnerOwners have the highest access, including finance, subscriptions, notifications, and full organization-level add-on role management, plus all manager-level project capabilities. Refer to Organization-level access (Organization Owner) and Project-level access (Project Owner).
For information about which permissions are available to each user type, refer to the following tables.

Organization-level access

The following table lists organization-level permissions and whether each user type has them.

Permission

Organization Owner

Organization Manager

Organization User

Guest

View organization membersYesYesYesNo
View organization settingsYesYesYesNo
View projectsYesYesYesNo
Add and remove membersYesYes, except on the OwnerNoNo
Edit organization members, except for ownersYesYes, except on the OwnerNoNo
Edit and delete organization user baseline propertiesYesYesNoNo
Edit organization settingsYesYesNoNo
Manage organization-level add-on roles for membersYesYesNoNo
Assign Finance Admin add-on role to organization membersYesNoNoNo
Create projectsYesYesNoNo
Edit projectsYesYesNoNo
Archive and unarchive projectsYesYesNoNo
Transfer projectsYesYesNoNo
Delete projectsYesYesNoNo
Link projectsYesYesNoNo
Unlink projectsYesYesNoNo
Manage organization policies (create, edit, and delete)YesYesNoNo
Set up personal notificationsYesYesYesYes
Manage webhook integrations for notificationsYesYesNoNo
Manage finance and billing settingsYesNoNoNo
Manage subscription settingsYesYesNoNo
Sign up for Unity Gaming ServicesYesNoNoNo
This is a non-exhaustive overview of permissions to illustrate the levels of access for different types of users. The Organization Owner and Organization Manager roles in particular are very powerful and have further permissions not listed above.

Project-level access

The following table lists project-level permissions and whether each project role has them.

Permission

Project Owner

Project Manager

Project User

Access financial and billing informationYesNoNo
Access and edit everything across all projectsYesYesNo
View project environmentsYesYesYes
Create, view, and delete environmentsYesYesNo
Create and delete environment policiesYesYesNo
Add and remove project iconsYesYesNo
Manage project-level add-on roles for membersYesYesNo
Edit project members, except for ownersYesYes, except on the OwnerNo
Edit and delete project user baseline propertiesYesYesNo
Manage apps (create, update, archive, unarchive, and transfer)YesYesNo
Edit app policiesYesYesNo
View project settingsYesYesYes
Edit project settingsYesYesNo
Manage project policies (create, edit, and delete)YesYesNo
Manage groups (edit groups, add and remove members)YesYesNo
Edit customer data settingsYesYesNo
Edit and delete customer data setting confirmationsYesYesNo
Manage service accounts (create, edit, and delete)YesYesNo
Create and delete API credentials for service accountsYesYesNo
Restrict the visibility of projectsYesYesNo
View restricted projectsYesYesYes (project members only)
Enable servicesYesYesNo
View project servicesYesYesYes
Access and edit project servicesYesYes*Yes*
Service-specific write access (manage features at service level)YesYesYes
Edit and delete project resource policiesYesYesNo
Edit and delete player resource policiesYesYesNo
Archive and unarchive projectsYesNoNo
Transfer projectsYesNoNo
Manage webhook integrations for notificationsYesYesNo
Manage finance and billing settingsYesNoNo
Manage subscription settingsYesNoNo
Sign up for Unity Gaming ServicesYesNoNo
* Additional access to services, and permissions on those services, can vary by service.

Roles

An Owner or a Manager can:
  • At the organization level, assign a user type and roles to an organization member. This grants the organization member access to the data and services of all projects that require this specific role. Within a project, the member's role is labeled Inherited from the organization.
  • At the project level, invite an organization member, or a guest from outside the organization, to the project and assign them a user type and roles. Project members can access only the data and services of this specific project. Guests can access only the selected project. Within the project, the member's role is labeled Individual Grant.
Organization members are listed as project members of all projects within their organization. However, they still need to be assigned the correct roles to access a project's data and services.