In addition to the default administrative roles available in the Samsara dashboard, you can customize your own roles and permissions for administrators.
To view permissions or add a custom role, reference the following topics:
After you create a custom role, you can assign it when you create new administrative users. Using a custom role type and a tag in combination will limit administrative access to the features allocated within their role, to manage or view the drivers, vehicles, and other devices assigned the tag.
You can also create a copy of an existing role, such as a default Samsara administrator role, and modify it into a new role. See Duplicate a Role for more information.
To add a custom role, perform the following workflow:
-
Select the Settings icon (
) at the bottom of your Fleet menu to view dashboard settings.
-
In Organization > Users & Roles > Roles, select + Add role.
-
Click into the Name your role field and enter a descriptive name.
-
(Optional) Add a custom description if you want to set a description of the role instead of view an auto-populated list of permissions the custom role can access.
-
Enable View or Edit permissions for each section or, for more granular permissions, expand the section and select the permissions individually. See Permissions for Custom Roles for granular detail of each permission.
-
Save the custom role.
You can create a copy of any administrative role, which you can then modify. This enables you to modify Samsara default roles which are otherwise not editable, or make a copy of custom roles instead of building roles from scratch.
To duplicate a role, perform the following workflow:
-
Select the Settings icon (
) at the bottom of your Fleet menu to view dashboard settings.
-
In Organization > Users & Roles > Roles, select the more actions ( ••• ) menu of the role you would like to copy and modify, then select Duplicate.
-
Rename the copy of the role.
-
Modify the copy of the Samsara or custom role as needed.
-
Save the role.
This role is now a new custom role in Organization > Users & Roles > Roles.
For each role that you create, you can assign unique levels of administrative access and granular permissions required for specific workflows. You can assign basic or custom permissions for each user including view and edit capabilities for certain categories. Samsara frequently updates categories and permissions to optimize site-wide usability. You can use the Search permissions bar to quickly find permissions using keywords such as privacy, driver, safety, etc.
Click the links below to navigate directly to that section in the table.
This table lists the granular permissions that you can assign to a custom role:
|
Permission |
Access |
Description |
|
Account Management (Billing, licensing, purchases, orders, and exchanges) |
||
|
Billing |
View |
Billing, payments, and invoices Users who are granted this permission must have Entire Organization access enabled before they are assigned a custom role. |
|
Edit |
Payment method Users who are granted this permission must have Entire Organization access enabled before they are assigned a custom role. |
|
|
Itemized Billing |
View |
Itemized billing reports |
|
Edit |
Create, edit, and delete itemized billing configurations |
|
|
Billing Roles |
Edit |
Create, delete, or edit roles with Billing permissions Users who are granted this permission must have Entire Organization access enabled before they are assigned a custom role. This permission requires that you additionally enable Settings > Edit: Users, Roles, and Tags |
|
Orders & Exchanges |
View |
View orders and exchange records on order history page Users who are granted this permission must have Entire Organization access enabled before they are assigned a custom role. |
|
Edit |
Grants permission to make purchases and submit warranty exchanges Choose from these individual settings below to fine-tune access:
Users who are granted this permission must have Entire Organization access enabled before they are assigned a custom role. |
|
|
License Assignment |
View |
License assignments |
|
Edit |
Create and edit license assignments Users who are granted this permission must have Entire Organization access enabled before they are assigned a custom role. |
|
|
Log in as Another User |
Edit |
Log in to the dashboard as another user in the organization |
|
Remotely Sign Out Drivers |
Edit |
Sign out drivers from the Samsara Driver App through the dashboard. |
|
Assistant Access |
View |
Allows users to interact with the AI Assistant. |
|
API Authentication |
View |
View API token and view OAuth 2.0 identities. API tokens and OAuth 2.0 secrets will be blurred. Users who are granted this permission must have Entire Organization access enabled before they are assigned a custom role. This permission also grants access to view Users and Roles. |
|
Edit |
View and create API tokens and OAuth 2.0 Apps. Users who are granted this permission must have Entire Organization access enabled before they are assigned a custom role. |
|
|
App Marketplace |
View |
App marketplace, integrations, and information about your developer account Users who are granted this permission must have Entire Organization access enabled before they are assigned a custom role. |
|
Edit |
Install third party applications and configure integrations Users who are granted this permission must have Entire Organization access enabled before they are assigned a custom role. |
|
|
Webhooks |
View |
Webhooks |
|
Edit |
Create, edit, and delete webhooks |
|
|
Developer Metrics |
View |
API requests on the developer metrics page |
|
Data Streaming |
View |
View API stream subscriptions |
|
Edit |
Create, edit, and delete API stream subscriptions |
|
|
CARB |
View |
CARB Clean Truck Check Application Users who are granted this permission must have Entire Organization access enabled before they are assigned a custom role. |
|
Edit |
Create, edit, and delete the CARB Clean Truck Check Application |
|
|
Functions |
View |
View created functions, function configuration, and function logs |
|
Edit |
Create, modify, and delete functions and function configuration |
|
|
Manage Asset Qualification Sets And Types |
View |
View Asset Qualification Sets and Types |
|
Edit |
Create, edit and delete Asset Qualification Sets and Types and manage their tag or attribute mapping. This permission should be granted at the organization level. It cannot be assigned to individual tags. |
|
|
Manage Asset Qualification Records |
View |
View Asset Qualification Records This permission includes the ability to view all information within a Qualification Record. Only provide this permission to users that should have access to potentially sensitive data |
|
Edit |
Create, edit, renew and archive Asset Qualification Records |
|
|
View limited information within Asset Qualification Records |
View |
View limited information within an Asset Qualification Record. This permission only includes viewing Issue Date and Expiration Date and hides all other sensitive data. |
|
View |
Initiate and watch live stream video footage from vehicles on trips This permission requires that you additionally enable Essentials > View: Drivers, Gateways, Location Data, and Reports |
|
|
Driver Assets |
View |
View any driver-facing asset |
|
External Assets |
View |
View any external-facing asset |
|
Audio |
View |
Hear audio from any camera asset |
|
Override camera config fields |
Edit |
Set camera configuration fields using JSON configuration overrides. |
|
Documents |
View |
Documents |
|
Edit |
Edit, archive, and delete documents |
|
|
Document Templates |
Edit |
Create and edit document templates Users who are granted this permission must have Entire Organization access enabled before they are assigned a custom role. This permission requires that you additionally enable Documents > Edit: Documents |
|
Edit |
Share and revoke driver QR Codes This permission requires that you additionally enable Essentials > View: Drivers |
|
|
Drivers |
View |
View drivers throughout the dashboard and in settings |
|
Driver Activation |
Edit |
Activate and deactivate drivers from the drivers page in settings This permission requires that you additionally enable Driver Details > View: Drivers |
|
Driver Settings |
Edit |
Edit all driver settings from the drivers page in settings and driver view page This permission requires that you additionally enable Driver Details > View: Drivers Choose from these individual settings below to fine-tune access:
|
|
Driver Logs |
View |
Compliance pages and HOS logs |
|
Edit |
HOS logs |
|
|
Driver Logs - Ignore |
Edit |
|
|
Unassigned Segments |
View |
Unassigned segments |
|
Edit |
Annotate and assign unassigned segments |
|
|
Gateways |
View |
Vehicle, asset, site, and industrial gateways |
|
Edit |
Edit and remove gateway settings and edit vehicle gateway from vehicle page |
|
|
Manage General Vehicle Attributes |
Edit |
Edit only vehicle name and license plate This permission requires that you additionally enable Essentials > View: Gateways |
|
Gateway Health |
View |
Gateway health issues and reports |
|
OEM Health |
View |
View OEM gateway health issues and reporting. |
|
Location data |
View |
View location of vehicles, trailers, and assets on fleet overview, dispatch, and proximity pages |
|
Live Share |
Copy |
Existing live share links |
|
Edit |
Create and edit live share links |
|
|
Sensors |
View |
View environment page, sensors throughout the dashboard, and sensors in settings |
|
Edit |
Edit sensor configurations in settings |
|
|
Alerts |
View |
View and download alerts from the alerts incident tab |
|
Edit |
Edit, create and remove alerts from the alerts configure tab |
|
|
Messages |
View |
View and print messages This permission requires that you additionally enable Driver Details > View: Drivers |
|
Edit |
Create and send messages This permission requires that you additionally enable Driver Details > View: Drivers |
|
|
Reports/General |
View |
View reports page, trip history, time on site and equipment report |
|
Custom Reports and Benchmarking |
View |
Custom reports & benchmarks |
|
Edit |
Custom reports & benchmarks |
|
|
Reefer Control |
Edit |
Remotely control reefer on/off status, run mode, and set point |
|
Map Editor |
View |
View data in the Map Editor |
|
Edit |
Edit or Apply new overrides in Map Editor |
|
|
Fleet Security Manager |
Edit |
Allows user to configure organization wide immobilization configurations This permission requires that you additionally enable Settings > Edit: Additional Admin Settings |
|
Immobilization Manager |
Edit |
Allows user to remotely immobilize a vehicle (immobilization depends on the speed threshold) This permission requires that you additionally enable Essentials > Edit: Gateways |
|
Forms |
View |
View Form Submissions and Issues |
|
Edit |
Create and edit Form Submissions and Issues |
|
|
Form Templates |
Edit |
Create, edit, and delete Form templates Users who are granted this permission must have Entire Organization access enabled before they are assigned a custom role. |
|
Fuel & Energy Reports |
View |
Fuel & Energy Hub, Fuel & Energy Report, Fuel Benchmark Report, IFTA, Idling Events Report, Driver Efficiency (Eco-Driving) Report, Sustainability Report, EV Suitability Report, and Idling Heatmap overlay This permission requires that you additionally enable Essentials > View: Reports/General. |
|
Edit |
Driver Efficiency (Eco-Driving) profiles, edit carbon emission factors, view and edit vehicle engine and fuel types This permission requires that you additionally enable Settings > View: Additional Admin Settings. |
|
|
Fuel Purchases |
View |
Fuel Purchases and Fuel Purchase details |
|
Edit |
Upload, edit, and delete Fuel Purchases and Fuel Purchase details |
|
|
Fuel Cards |
View |
Fuel Card Vendors |
|
Edit |
Add, edit, and delete Fuel Card Vendors |
|
|
Fuel Costs |
View |
Fuel Costs |
|
Edit |
Create and edit Fuel Costs |
|
|
Unproductive Idling Configuration |
Edit |
Create and edit the global unproductive idling config |
|
Manage hubs |
View |
View hubs |
|
Edit |
Create, edit, and remove hubs |
|
|
Maintenance Log |
View |
Maintenance features |
|
Edit |
Create and edit schedules, DVIRs and logs. This permission requires that you additionally enable Essentials > View: Gateways |
|
|
Work Orders |
View |
View all Work Order details except labor costs. To view labor cost information, enable the |
|
Edit |
Edit all aspects of a Work Order. Choose from these individual settings below to fine-tune access:
|
|
|
Labor Rate |
View |
View labor rate Disabling this permission impacts all areas of reporting that include labor costs |
|
Edit |
Edit labor rate |
|
|
Maintenance Settings |
View |
View maintenance settings page |
|
Edit |
Edit maintenance settings |
|
|
Warranty |
View |
View warranty list page |
|
Edit |
Edit warranties |
|
|
Inventory |
View |
View inventory list page |
|
Edit |
Edit inventory |
|
|
Maintenance Report |
View |
View maintenance reports |
|
Mobile Experience Management |
View |
View access to all MEM pages such as devices and policies associated with the Samsara MEM solution. Does not permit any device commands such as to initiate a remote session, restart, reset, or edit device name. This permission requires that you additionally enable Essentials > View: Drivers, Gateways, Location Data, and Messages |
|
Edit |
Edit access to all MEM pages such as devices and policies associated with the Samsara MEM solution. Enables you to perform device commands such as to initiate a remote session, perform a restart or factory reset, edit the device name, and lock the device. This permission requires that you additionally enable Essentials > View: Drivers, Gateways, Location Data, and Messages |
|
|
Sensitive Assets |
Edit |
View sensitive media and add or remove a Sensitive context label. Those without access to sensitive media see a placeholder instead of the still or video, and won’t be able to add or remove a Sensitive context label. This permission requires that you additionally enable:
or
|
|
Recognition Pages & Reports |
View |
View Streaks, Milestones, Score Improvements, and historical reward information. This permission requires that you additionally enable Essentials > View: Drivers |
|
Send Kudos |
Edit |
Send kudos to drivers and view historical kudos information. This permission requires that you additionally enable Driver Details > View: Drivers |
|
Send Rewards |
Edit |
Send monetary rewards to drivers and view historical reward information. This permission requires that you additionally enable:
|
|
Reservations (Create and manage vehicle and equipment reservations) |
||
|
Manage Reservations |
View |
View reservation calendar and existing reservations |
|
Edit |
Create, edit, and cancel reservations |
|
|
Manage route plans |
View |
View and create route plans |
|
Edit |
Create, edit, and remove route plans |
|
|
Manage Routes |
View |
View routes page, dispatch page, route reports, and download routes. This permission requires that you additionally enable Essentials > View: Location Data |
|
Edit |
Create, edit and remove routes |
|
|
Inbox & Report |
View |
Safety Inbox, Safety Report, Dash Cam pages, Visual Review, and other applicable pages, and view videos of events surfaced in the Safety Inbox. This permission requires that you additionally enable Driver Details > View: Drivers |
|
Edit |
Safety events and add labels on events, add safety managers, assign drivers, and add comments This permission requires that you additionally enable:
|
|
|
Dismiss Safety Events |
Edit |
Can change coaching status of a safety event to Dismissed This permission requires that you additionally enable Safety > View: Inbox & Report |
|
Triage Safety Events |
Edit |
Can change the coaching status of a safety event to Needs Review, Needs Coaching, or Needs Recognition This permission requires that you additionally enable Safety > View: Inbox & Report |
|
Review Safety Events |
Edit |
Can change the coaching status of a safety event to Reviewed This permission requires that you additionally enable Safety > View: Inbox & Report |
|
Share Safety Events |
Edit |
Share events to drivers through the Driver App and Driver Portal This permission requires that you additionally enable:
|
|
Coach Safety Events |
Edit |
Can change the coaching status of a safety event to Coached or Recognized This permission requires that you additionally enable Safety > Edit: Inbox & Report |
|
Add Behavior Labels |
Edit |
Add behavior labels to safety events This permission requires that you additionally enable Safety > View: Inbox & Report |
|
Remove Behavior Labels |
Edit |
Remove behavior labels from safety events This permission requires that you additionally enable Safety > View: Inbox & Report |
|
Comment on Safety Events |
Edit |
Add comments on safety events This permission requires that you additionally enable Safety > View: Inbox & Report |
|
Safety Event Assignment |
Edit |
Assign, update, and remove drivers and coaches for safety events This permission requires that you additionally enable:
|
|
Safety Event Access - Coach |
View |
View safety events for all coaches. This permission requires that you additionally enable:
|
|
Safety Event Access - Panic Button |
View |
View dash cam videos and trip details for panic button events. To install the Panic Button and configure Panic Button video retrieval and alerts, see Panic Button. This permission requires that you additionally enable:
|
|
Safety Event Access - Driver |
View |
Safety event review in the Safety Inbox based on driver assignment. This permission requires that you additionally enable Safety > View: Inbox & Report |
|
Safety Event Access - Vehicle |
View |
Safety event review in the Safety Inbox based on vehicle assignment. This permission requires that you additionally enable Safety > View: Inbox & Report |
|
Video Download |
View |
Download video from events surfaced in the Safety Inbox This permission requires that you additionally enable:
|
|
Multicam Installation |
View |
Multicam devices |
|
Edit |
Multicam devices and check activated multicam assets |
|
|
Dash Cam Installation |
View |
Check dash cam installation (take picture functionality) This permission requires that you additionally enable:
|
|
Coaching |
View |
Coaching page and other users This permission requires that you additionally enable:
|
|
Edit |
Coach drivers, edit coaching status, and add coaching comments This permission requires that you additionally enable:
|
|
|
Video Retrieval |
View |
Video retrievals and video library This permission requires that you additionally enable:
|
|
Edit |
Request video retrieval. This permission requires that you additionally enable:
|
|
|
Camera Health |
View |
View Camera Health page. This permission requires that you additionally enable:
|
|
Safety Detection Log |
View |
Allows users to see all detections captured by Samsara, including those that did not meet thresholds to become Safety Inbox events. This permission requires that you additionally enable Safety > View: Inbox & Report |
|
Edit |
Allows users to promote detections from the Detection Log into the Safety Inbox, turning them into Safety Events. This permission requires that you additionally enable Safety > View: Inbox & Report |
|
|
Security Policies (Configure your organization's security policies, such as MFA and driver passwords) |
||
|
View Security Policies |
View |
Allows users to view the organization's security policies. |
|
Create Security Policies |
Edit |
Allows users to create the organization's security policies. |
|
Update Security Policies |
Edit |
Allows users to update the organization's security policies. |
|
Delete Security Policies |
Edit |
Allows users to delete the organization's security policies. |
|
Users, Roles, and Tags |
View |
Users, roles, and tags |
|
Edit |
Choose from these individual settings below to fine-tune access:
|
|
|
Attributes |
View |
View attributes in settings |
|
Edit |
Create, edit, and delete attributes |
|
|
Additional Admin Settings |
View |
View general settings, sensors, gateways, HOS/DVIR, trailers & assets and activity log in settings Users who are granted this permission must have Entire Organization access enabled before they are assigned a custom role. |
|
Edit |
Edit general organization settings Users who are granted this permission must have Entire Organization access enabled before they are assigned a custom role. |
|
|
Device Activation |
Edit |
Activate devices This permission requires that you additionally enable Essentials > View: Gateways |
|
Device Deactivation |
Edit |
Deactivate devices This permission requires that you additionally enable Essentials > View: Gateways |
|
Device Returns |
View |
View devices that need replacement This permission requires that you additionally enable:
|
|
Edit |
Return devices that need replacement This permission requires that you additionally enable:
|
|
|
Scheduled Reports |
View |
View scheduled reports |
|
Edit |
Create, edit, and remove scheduled reports |
|
|
Scheduled Report Owners |
Edit |
Edit Scheduled Report Owners This permission requires that you additionally enable Settings > Edit: Scheduled Reports |
|
Alert contacts |
View |
Alert contacts |
|
Edit |
Create, edit, and remove alert contacts |
|
|
Addresses / Geofences |
View |
View addresses |
|
Edit |
Choose from these individual settings below to fine-tune access:
|
|
|
Feature Management |
View |
New available features Users who are granted this permission must have Entire Organization access enabled before they are assigned a custom role. This permission requires that you additionally enable Settings > View: Users, Roles, and Tags |
|
Edit |
Enable / disable available features for any accessible user |
|
|
Single Sign On |
View |
Single sign on settings Users who are granted this permission must have Entire Organization access enabled before they are assigned a custom role. |
|
Edit |
Create, edit, and delete single sign on settings Users who are granted this permission must have Entire Organization access enabled before they are assigned a custom role. |
|
|
QR Code Driver Assignment |
Edit |
Edit QR Code driver assignment settings |
|
Org Domains |
View |
View domains |
|
Edit |
Edit org domains Users who are granted this permission must have Entire Organization access enabled before they are assigned a custom role. |
|
|
Rewards |
View |
View Rewards settings This permission requires that you additionally enable Settings > View: Additional Admin Settings |
|
Edit |
Edit Rewards settings This permission requires that you additionally enable Settings > View: Additional Admin Settings |
|
|
Excuse Speeding |
View |
Excuse speeding on the vehicle show page |
|
Manage Assignments |
View |
View training data This permission requires that you additionally enable:
|
|
Edit |
Assign, edit, and delete assignments This permission requires that you additionally enable:
|
|
|
Manage Courses |
Edit |
Author Training courses or Import standards based (Scorm, CMI5, etc.,) zip files. Also edit, archive, delete existing courses and manage categories. This permission requires that you additionally enable Training > View: Manage Assignments |
|
Manage Worker Qualification Sets And Types |
View |
View Worker Qualification Sets and Types |
|
Edit |
Create, edit and delete Worker Qualification Sets and Types and manage their tag, attribute mapping. This permission should be granted at the organization level. It cannot be assigned to individual tags. |
|
|
Manage Worker Qualification Records |
View |
View Worker Qualification Records. This permission includes the ability to view all information within a Qualification Record. Only provide this permission to users that should have access to potentially sensitive data |
|
Edit |
Create, edit, renew and archive Worker Qualification Records |
|
|
View limited information within Worker Qualification Records |
View |
View limited information within a Worker Qualification Record. This permission only includes viewing Issue Date and Expiration Date and hides all other sensitive data. |
|
Incidents |
View |
Review worker safety notifications and view incident details |
|
Edit |
Edit worker safety incidents including updating status, priority, or assigned user |
|
|
Check-Ins |
View |
View worker safety check-ins |
|
Edit |
Request a worker safety check-in |
|
|
Wearable Assignment |
View |
View worker safety wearable assignment |
|
Edit |
Assign a worker safety wearable |
|
|
Always-On Location |
View |
View Worker Safety always-on location. Always-on location must be enabled in Worker Safety settings. |

Comments
0 comments
Please sign in to leave a comment.