Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Platform Analytics roles

Platform Analytics has both unique roles and roles from other applications that apply to it.

Users with any role

Users with any role can create visualizations in dashboards that they have editing rights to. They need access to the data that they wish to display. They can add data visualizations that have been shared with them to their dashboards. In the Visualization Designer, they can bookmark or export such visualizations, and if a visualization has been shared with them with sharing rights, they can share it with other groups and users. Specific roles are needed to create or edit visualizations in the Visualization Designer.

Users with any role can create dashboards and share them with groups, users, and roles. If a data visualization has been shared with them, they can add this visualization to their dashboards from the library. These users can share a dashboard that has been shared with them if sharing rights were also granted. They can pass along editing rights if granted.

User groups

Simplify user administration by creating groups that contain all the roles necessary for specific personas rather than to individual users. You can then assign individual users to those groups. When users transition to new roles, you can then re-assign their group memberships, and avoid scenarios where users retain unexpected roles.

For details on the administration of users, groups, and roles, see User Administration.

Role description

The following table provides the following information about each role associated with Platform Analytics.

  • Role name

    Name of the role from the Name field in the Roles [sys_user_role] table.

  • Description

    Description of the role and its intended use.

  • Contains Roles

    List of roles contained within the role.

  • Contained by roles (except admin)

    Any roles, besides admin, that contain the role. The admin role contains all the roles.

The following attributes are shared by all of the roles:

  • None of the roles are assigned to a group by default.
  • None of the roles require users to be allocated as part of a paid subscription, although a paid subscription is required for most Performance Analytics functionality.
  • None of the roles are elevated, meaning none grant access to High Security Settings.
  • All of the roles are included in the base system, except for analytics_admin and sn_process_optimization_analyst, which are included with Usage Insights and Process Mining, respectively.

Tip: Try to assign the least inclusive role that still provides the necessary access. For example, if you want a user to be able to create data visualizations in the library and share them with users, but not schedule their export, grant that user viz_creator and not viz_admin.

Role nameDescriptionContains RolesContained by roles \(besides admin\)
adminCan create dashboards. Can create data visualizations in the Visualization Designer, which are automatically saved to the Library. Can edit, duplicate, share, and delete any dashboard and data visualizations. Can add filters to the filter library or edit or delete any filter. Has Usage Insights administrator privileges.All other roles in this tableNot applicable
platform\_analytics\_adminRole for administrative privileges in the Platform Analytics experience. This role includes administrative privileges for products and features that are part of Platform Analytics, including Performance Analytics and Usage Insights. Has the rights of all roles listed here except report\_admin rights to Core UI reports. Equivalent to admin role from a security perspective.- analytics\_admin - analytics\_categories\_admin - analytics\_filter\_admin - dashboard\_admin - pa\_admin - par\_scheduler - viz\_adminNone
analytics\_adminRole for Usage Insights administrative privilegesAll other Usage Insights admin and viewer roles. For more information, see Roles installed with Usage Insights.platform\_analytics\_admin
analytics\_categories\_adminRole for creating, editing, or deleting category tags on dashboards.None- platform\_analytics\_admin - dashboard\_admin
analytics\_filter\_adminRole for editing or deleting any Platform Analytics filter. Can add filters to the filter library. For more information, see Filters in Platform Analytics.None- platform\_analytics\_admin - dashboard\_admin - pa\_admin - report\_admin - viz\_admin
dashboard\_adminCan create, edit, duplicate, share, and delete any dashboard. These rights extend to both Platform Analytics and responsive dashboards. For more information, see Dashboard permissions.Can schedule the export of all dashboards on an instance. Can also delete scheduled exports.- analytics\_filter\_admin - analytics\_categories\_admin - sn\_par\_sche\_export.par\_scheduler\_admin - par\_schedulerplatform\_analytics\_admim
now\_assist\_explorer\_user- Can view the trigger point to start a AI Data Explorer exploration from data visualizations, Lists, or the Now Assist panel. - Can edit an exploration. - Can create a new exploration  
pa\_kpi\_signal\_adminCan activate KPI Signals for an indicator. For more information, see Activate KPI Signals monitoring for an indicator (KPI).NoneNone. However, pa\_admin has the same privileges
pa\_adminRole for Performance Analytics administrative privileges. Equivalent to admin role from a security perspective.- viz\_admin - analytics\_filter\_admin - All other Performance Analytics roles. For more information, see Performance Analytics roles.platform\_analytics\_admin
par\_schedulerCan create and edit the scheduled email distribution of any dashboard or data visualization they can view or editNonesn\_par\_sche\_export.par\_scheduler\_admin
sn\_par\_sche\_export.par\_scheduler\_adminSame as par\_scheduler, but has full CRUD rights to the par\_export table, including deletionpar\_scheduler- dashboard\_admin - viz\_admin
sn\_process\_optimization\_analystCan configure a Process Mining map on a dashboard. For more information, see Configure a Process Mining map on a dashboard.NoneNone
viz\_creatorCan create data visualizations in the Visualization Designer, which are then available in the library. Can also edit, export, and share data visualizations in the Visualization Designer, if they own that visualization or have had it shared with them with the relevant rights. Can only delete visualizations that they created. Can share visualizations only with groups and users.None- viz\_admin \(implicit\) - itil - report\_user
viz\_admin- Can create data visualizations in the Visualization Designer, which are then available in the library. - Can access all data visualizations in the library, either to add to a dashboard or open in the Visualization Designer. - Can perform all actions in the Visualization Designer on any visualization. - Can share a visualization with groups, users, or roles. - Can schedule the export of all data visualizations on an instance. Can also delete scheduled exports.- analytics\_filter\_admin - sn\_par\_sche\_export.par\_scheduler\_admin Also includes the same privileges as viz\_creator- platform\_analytics\_admin - pa\_admin - pa\_power\_user
report\_adminAs viz\_admin, but can also create, edit, delete, and export all Core UI reports, including those on the Service Portal.- viz\_admin - analytics\_filter\_admin - report\_user 

The role hierarchy in the table is also shown in the following diagram:

Image omitted: platform-analytics-role-hierarchy.png
Platform analytics role hierarchy.

Role lookup by use case

Use caseRequired role
Create a dashboardAny role
Share a dashboardAny role to share a data visualization that you created or that was shared with you with sharing rights. With the viz\_admin role or higher, you can share any data visualization on the instance. When you share a data visualization, you can pass along the rights to share that visualization further. You also decide whether to share with editing rights or only viewing rights. If a data visualization has been shared with you with sharing and editing rights, you can also pass along editing rights.dashboard\_admin to share any dashboard A role with read access to the Roles \[sys\_user\_role\] table to share with roles
Edit a dashboardAny role, if you created the dashboard or have had it shared with you with editing rights.dashboard\_admin or higher for any dashboard Technical dashboards also require ui\_builder\_admin
Duplicate a dashboardAny role, if you can view the dashboard. You cannot duplicate technical dashboards.
Create a printer-friendly copy of a dashboardAny role, if you can view the dashboard.
Export a dashboardAny role, if you can view the dashboard.
Schedule the export of a dashboardpar\_scheduler for dashboards that you own or that have been shared with you.dashboard\_admin or higher for any dashboard
Delete the scheduled export of a dashboardsn\_par\_sche\_export.par\_scheduler\_admin \(contained in dashboard\_admin\)
Bookmark a dashboardAny role, if you can view the dashboard.
Delete a dashboardAny role, if you created the dashboard.dashboard\_admin or higher for any dashboard
Configure dashboard detailsAny role, if you created the dashboard or have had it shared with you with editing rights.dashboard\_admin or higher for any dashboard
Configure dashboard settings except scheduled refreshesAny role, if you created the dashboard or have had it shared with you with editing rights.dashboard\_admin or higher for any dashboard
Schedule dashboard refreshesdashboard\_admin or higher
Configure dashboard tab cache timeoutadmin
Create dashboard categoriesanalytics\_categories\_admin or higher
Assign categories to a dashboardAny role, if you can edit the dashboard.analytics\_categories\_admin or higher to assign a category to any dashboard.
Use caseRequired role
Create a data visualizationAnyone with access to data can create a visualization of that data on a dashboard that they own. Users with the viz\_creator role can create a visualization in the Visualization Designer. If you create a visualization in the Visualization Designer, it is saved to the library.
Edit a data visualizationYou can edit any visualization that you created or that was shared with you with editing rights, if it is not in the library. If it is in the library, you also need the viz\_creator role.Edit any visualization on the instance with viz\_admin or higher.
Add a visualization from the library to a dashboardAny role, if the visualization has been shared with you.viz\_creator to add any visualization from the library.
Add a visualization that was created in a dashboard to the libraryviz\_creator or higher and the right to edit the dashboard
Unlink a data visualization on a dashboard from the library, creating a version that is local to that dashboard.Any role, if you can edit the dashboard containing the visualization
Duplicate a visualization in the Visualization Designerviz\_creator or higher
Share a visualization with users or groupsAny role to share a data visualization that you created or that was shared with you with sharing rights. With the viz\_admin role or higher, you can share any data visualization on the instance. When you share a data visualization, you can pass along the rights to share that visualization further. You also decide whether to share with editing rights or only viewing rights. If a data visualization has been shared with you with sharing and editing rights, you can also pass along editing rights.
Share a data visualization with rolesviz\_admin or higher
Export a visualizationAny role, if you can view the visualization in the Visualization Designer.
Schedule the export of a data visualizationpar\_scheduler or higher to schedule the export of a data visualization that you can edit. viz\_admin or higher to schedule the export of any data visualization on the instance.
Delete the scheduled export of a data visualizationsn\_par\_sche\_export.par\_scheduler\_admin \(contained in viz\_admin\)
Delete a visualizationAny role, to delete a data visualization that you created. viz\_admin or higher to delete any data visualization on the instance.
Control data source availability by roleadmin
Configure visualization interactionsAny role if you have the right to edit the data visualization. The viewer needs the right to view any data they drill down to.
Use service catalog variables in data visualizationsviz\_creator or higher
Create coloring rules for data visualizationsAny role if you have the right to edit the data visualization.
Use caseRole
Add a filter or a filter group to a dashboardAny role, if the user has editing rights to the dashboard.dashboard\_admin or higher to add a filter or filter group to any dashboard
Edit a filter on a dashboardAny role, for a filter that is not in the library, if the user has editing rights to the dashboard.analytics\_filter\_admin or higher is also needed if the filter is in the library. Alternatively, the user can detach the filter on the dashboard from the library and edit a local copy.
Add a local filter on the dashboard to the libraryanalytics\_filter\_admin or higher, and editing rights to the dashboard
Create or edit a filter in the Filter Designeranalytics\_filter\_admin or higher
Use caseRole
Configure a Process Mining map on a dashboardsn_process_optimization_analyst
Activate KPI Signals monitoring for an indicator (KPI)pa_kpi_signal_admin
Create or edit an exploration in AI Data Explorernow_assist_explorer_user

Parent Topic:Platform Analytics experience reference

Related topics

Performance Analytics roles

Roles installed with Usage Insights

Reporting roles

Common dashboard tasks in the in-line editor

Common data visualization tasks