Five roles, ~50 granular permissions, no super-admin bypass
Operations initiates, finance approves, engineering holds API keys, auditors read. Signing power comes from holding a key share — never from a role checkbox — so access control and custody control reinforce each other instead of blurring.
Share the Trust, Guard the Keys
Digital-asset operations fail at the seam between people and keys: one account that can do everything, shared credentials, an auditor with write access because read-only was inconvenient. Vaultody ships five roles with additive permissions and no super-admin bypass — and signing power comes from holding a key share, never from a checkbox.
Initiating and approving are different permissions; viewer sees everything and touches nothing. Roles are additive permission sets — no deny-override puzzles, no inherited surprises, and owner/admin are themselves permission-bound.
Five roles, and the one nuance most vendors gloss over.
Get answers to commonly asked questions.
Revoke the role; if they held a key share, run a reshare ceremony — key material never travels with people, and addresses never change.
The five roles with granular permissions cover the practical shapes; custom composition is an Enterprise conversation.
2 on Entry, 3 on Standard, 5 on Business, custom on Enterprise.

Access that maps to your org — least privilege without the admin pain.