Availability All Editions
Flexibly manage user permissions and get a transparent overview of who can do what by organizing users into groups.
- How to Find
- Manage User Groups Permissions
- General
- Views & Areas
- Project & Resource Planning
- Integrations
- System Administration
How to Find
To access this view, you need to have the Add, Edit, and Delete Users and User Groups right.
In the left Sidebar, click Manage and select User Groups:
You'll see a list of your user groups here, and the user names of active users per group (i.e., those that have not been deactivated under Manage > Users), and the number of active users.
At the top of the view, you can add new groups or search for group names.
To configure an existing group, move the cursor over a group and click the pencil icon at the end of the row.
To duplicate or delete a group, move the cursor over a group, click the three dots on the right and select an option.
Manage User Groups Permissions
To efficiently manage the rights of your user groups, they are structured in such a way that related permissions are logically grouped together in shared sections:
Before you configure these groups, we recommend that you clarify which users should add and update data in Meisterplan, and if they should use the Plan of Record or a scenario.
General
In the General section, you define the basic properties of the user group:
Name
Here you can define the group name.
Users in this User Group
Here you can assign users to or remove users from the group.
Users can be assigned to multiple groups. Permissions configured through groups are additive. This means that a user will have all permissions that are granted for at least one of the groups they are assigned to, even if that right is not granted for other groups they are assigned to.
Example: A user is assigned to Group A and Group B. Group A has been granted a certain right while Group B has not. In this case, the user will have the right.
Views & Areas
In the Views & Areas section, you define which views in the left sidebar, portfolios, and scenarios the user group has access to. You can also determine whether the group is allowed to access the Change Log and Financial Data.
Navigation
In addition to customizing user rights, you can also customize access to views based on user groups.
Access to Views in the Left Sidebar
Configure access to certain views in the left sidebar for different user groups so that each user group only sees what is relevant to them. Learn more in the article Manage Customizable Navigation.
Admin Right for Navigation
By checking or unchecking Define Navigation for User Groups, you define whether this group is allowed to manage the navigation in the left sidebar for other user groups (i.e., decide who can see which views).
Custom Views & Reports
Define whether the user group is allowed to edit and share custom views and reports. The selection is made using a toggle function, where you can switch between the options Private, Shared, and All.
- Private: This user group can add custom views and reports but cannot share them with others. They can read custom views and reports that have been shared with them, but cannot edit them.
- Shared: This user group can add custom views and reports and share them with others. They can edit, delete, and share custom views and reports that have been shared with them.
- All: This user group can add custom views and reports and share them with others. They can edit, delete, and share all custom views and reports.
Learn more in the article Custom Views.
Portfolios
In the Portfolios section, you define which portfolios users in this group can access, and whether they are allowed to manage them.
Access to Portfolios
Add or remove portfolios to define which portfolios users in this group have access to. When you add a portfolio, the group automatically receives read access to it.
Configure Portfolios
Define whether users in this group are allowed to create, edit, share, and delete portfolios. The selection is made using a toggle function with the options None, With Access Rights, and All:
- None: This user group can view portfolios for which they have access rights, but cannot configure them.
- With Access Rights: This user group can configure, share, and delete portfolios for which they have access rights, and add new portfolios.
- All: This user group can add, configure, share, and delete all portfolios.
Note: This setting does not determine whether users can edit the projects that are part of a portfolio. For this, they need Edit Rights for the scenario or the Edit Plan of Record right, and they need the Edit Projects and Programs right.
For information on access rights for portfolios, see the article Portfolio Access Rights.
Scenarios
Determine whether the user group is allowed to edit and configure scenarios. Additionally, you can specify whether they are allowed to edit the Plan of Record and/or replace it with a scenario.
Scenarios with Edit Rights
Add or remove scenarios to define which scenarios users in this group have editing rights for.
Plan of Record
Check the boxes to define which actions this user group is allowed to perform:
- Edit Plan of Record: This user group has the right to edit projects and programs in the Plan of Record.
- Replace Plan of Record with ScenarioPro Premium: This user group can entirely replace the Plan of Record with a scenario.
Configure ScenariosPro Premium
Define whether users in this group are allowed to configure scenarios. A toggle function lets you choose between None, With Edit Rights, and All:
- None: This user group cannot configure scenarios. Members of this group can see all scenarios with visibility, and edit data in all scenarios for which they have the required edit rights.
- With Edit Rights: This user group can configure scenarios with visibility for which they have edit rights. Members of this group can see all scenarios with visibility, and edit data in all scenarios for which they have the required edit Rights.
- All: This user group can configure all scenarios. Members of this group can see all scenarios and edit their data.
Note:
- Regardless of this setting, all users can see, open, and compare all scenarios, unless the scenario's visibility was limited.
- This setting alone does not determine whether users can edit the projects in a scenario. For this, they also need the Edit Projects and Programs right.
- Users can edit projects in the Plan of Record and replace data in the Plan of Record with that from a scenario when they have the Edit Plan of Record right.
For information on editing rights for scenarios, see the article Adding, Editing, and Deleting Scenarios.
Change Log
Define whether users in this group have access to the Change Log for modifications made to portfolios and projects.
Access Change Log
Check the box to grant users in this group access to the Change Log.
Financial DataPro Premium
Define whether users in this group have access to financial data (e.g., costs, benefits, budgets, and KPIs).
Access Financial Data
Check the box to grant users in this group access to financial data.
Users without this permission will not have access to the following views and functionalities:
-
Portfolio Designer:
- Financial section
- Settings for the Financial section
- Financial fields in resource, team, and role hints
- Project and Program Overview: Financial key indicators. The field Approved Budget can be displayed even without the Access Financial Data right if it is configured in the Project Field Rights.
- Change Log: All changes to financial data
- Portfolio Manager: Budget information and settings
- Quick Import for Financial Events: The import will not be available
- Quick Import for Actual Financial Events: This import will not be available.
- Export to Excel: No export of financial data
-
Project Details View:
- Financials section with financial events
- Financial Tracker section: if the field Approved Budget is configured, the Financial Tracker will be displayed with only the approved budget.
- Resources, Teams, and Roles - Costs section
- Cost Type Tracker section
- Cost Type field
- Portfolio Dashboard: All financial key figures
-
Resource Pool:
- Cost per Hour in resources, teams, and roles
- Cost Type field in roles
- List: Financial fields as columns
- Board: Financial fields as project details on cards
-
Reports:
- Pivot & Charts: Financial reports
- Financial fields and currency as allocation unit in reports of the Pivot & Charts: Project, Allocation and Capacities type
- Access to financial data via Reporting API or Rest API
This right will not apply to:
- Custom fields of the Currency type. Access can be restricted using Project Field Rights
- Currency Settings, Start of Fiscal Year and Finance Categories. Access can be restricted with the Manage Project Fields, Project Settings, Project Overview and Advanced right
- Financial section and Cost Type can still be configured in the Project Settings. Access can be restricted with the Manage Project Fields, Project Settings, Project Overview and Advanced right
Note: If you remove access rights to financial data, the permission to edit planned financial events and access to the project field Cost Type will also be automatically removed. Any existing access to custom project fields containing financial details will not be removed.
Financial Data in Reports
Users without the Access Financial Data right can still view reports that include financial fields and currencies, but these fields will not be displayed. Saving the configuration will remove those fields or currencies from this report for all users.
For reports that contain financial data, we recommend only granting report access rights to users that have the Access Financial Data right.
Find more information on report access in the Integrated Reports article.
Project & Resource Planning
In the Project & Resource Planning section, you define which projects and programs users in this group are allowed to edit and manage. Additionally, you can specify whether they are allowed to modify schedules, edit allocations, or view and record actuals.
Projects & Programs
Define which projects and programs (including core data and allocations) users in this group are allowed to edit.
Edit Projects & Programs
Define whether the user group has the right to edit projects or programs, and which ones. A toggle function lets you choose between None, Mine, OBS, and All.
-
None: This user group cannot edit projects, even if they have editing rights for a scenario.
- Note: Additional editing rights will only become visible once you select an option other than None.
- Mine: This user group can edit the projects where the linked resource of the logged-in user is assigned as a Project Manager, or assigned to project field of the resource type. Additonally, they need to have edit rights to the scenario or the Plan of Record.
- Note: The respective user must be set as Project Manager or the custom project field of the resource type in the respective project field. It does not matter if the user is also allocated to the project in a Project Manager, or custom resource type, role or not. The respective user must be linked to a resource. In this article you can learn how to do this.
- OBS: This user group can edit projects with the same OBS unit (or sub OBS unit thereof) as the linked resource of the logged-in user. Additonally, they need to have edit rights to the scenario or the Plan of Record.
- All: This user group can edit all projects and programs if they have edit rights to the scenario or the Plan of Record.
General Project & Program Rights
Check the boxes to define which general actions this user group is allowed to perform.
- Add Projects and Programs: This user group can add and duplicate projects and programs, including their allocations, milestones, and financial events. To edit a new project’s start and finish date, users also need the Change Project Schedule right.
- Delete Projects and Programs: This user group can delete projects and programs, including allocations, milestones, and financial events.
- Change Rank: This user group can manually change the rank of projects in the Portfolio Designer, change the position of the Cut-Off and Must-Have line and perform the Move to Rank action in the Project Details view.
- Rank & Sort All Projects by Their Priority ScoreProPremium: This user group can rank and sort all projects and programs by their priority score in the Portfolio Designer.
Detailed Project & Program Rights
Check the boxes to define which detailed actions this user group is allowed to perform.
Note: For all functions under Detailed Project and Program Rights, users must also have edit rights for the active scenario, or the Edit Plan of Record right.
- Change Project Schedule: This user group can change the start and finish dates of their projects, for example, by extending, stretching, or shortening projects.
- Auto-Schedule Multiple ProjectsProPremium: This user group can auto-schedule their projects in the Portfolio Designer.
- Add, Edit, and Delete Planned Financial EventsProPremium: This user group can add, modify, and delete Planned Financial Events. A prerequisite is the Access Financial Data right under Views & Areas.
- Add, Edit, and Delete Milestones and their Dependencies: This user group can add, change and delete milestones and their dependencies.
Edit Allocations
Define whether users in this group are allowed to add, edit, and delete allocations based on their project rights.
If users have the Resource Managers Can Always Edit Allocations of Their Own Resources, Teams and Roles right further below, they can also edit allocations for the resources, teams, and roles assigned to them – regardless of project permissions.
A toggle function lets you choose between None, Roles, and Resources, Teams, and Roles.
- None: This user group cannot edit allocations based on their project rights, regardless of if they can edit project information. However, if users have the Resource Managers Can Always Edit Allocations of Their Own Resources, Teams and Roles right, they can still edit allocations for the resources, teams, and roles assigned to them.
-
Roles: Users can edit only role allocations of the projects to which they have access according to Project and Program rights.
Resources, Teams, and Roles: Users can edit all allocations of the projects to which they have access according to Project and Program rights.
Define whether users in this group have the right to access Actual Time Worked, Actual Financial Events, and to view the resulting Actual Costs of a project. A toggle function lets you choose between None, Read Only, and Edit.
- None: This user group cannot view or edit actuals (e.g., actual time worked and actual financial events).
- Read Only: This user group can view actuals (e.g., actual time worked and actual financial events) of all projects.
- Edit: This user group can view and edit actuals (e.g., actual time worked and actual financial events) of all projects. To import Actual Time Worked and Actual Financial Events, they also need the Import Data right under Integrations. Precondition for Edit: under Edit Projects & Programs at least the right Mine.
Project Fields
Define which rights users assigned to this group have regarding project fields listed under Manage > Project Fields and the following system fields:
- Approved Budget
- Approved CapEx Budget
- Approved OpEx Budget
- Approved Total Effort
- Goal
- Cost Type
- Name
- Notes
- Project Key
- Project Manager
- OBS Fields
Grant users access to the project fields by dragging and dropping them into the Edit or Read Only section.
- Edit: Project fields are visible to users but cannot be edited.
- Read Only: Project fields can be edited by users (e.g., changing the project manager or assigning goals to projects).
- No Access: Project fields cannot be viewed or edited by users.
Multiple fields can be selected and moved together at the same time. Use the search function to specifically look for certain project fields.
Note: The fields Goal, Name, Project Type, Cost Type, and Project Manager must be visible to all users so they must have at least read only rights.
Resources, Teams, and Roles
Define whether users in this group are allowed to edit details and allocations of resources, teams, and roles.
Check the boxes to define which detailed actions this user group can perform:
Resource, Team, and Role Details
- Edit Resource Pool and Absences: This user group can edit the details of all resources, teams, and roles in the Resource Pool, including absences.
Allocations of Their Resources, Teams, and Roles
- Resource Managers Can Always Edit Allocations of Their Own Resources, Teams and Roles: This user group can always edit the allocations of the resources, teams and roles for which they are listed as the resource manager, independent of other project rights or portfolios. They still need edit rights for scenarios and the Plan of Record.
Access Financial Data and Cost per Hour
All users with the Access Financial Data right can draw conclusions about the Cost per Hour of a resource, even if they don't have access to the Resource Pool.
Input Data for Linked ResourcePro Premium
Define if users of this group have the right to view, record and edit their Actual Time Worked per project in the view My Schedule. They can also see changes made to their own actuals in the Change Log. The prerequisite is that the user is linked to a resource.
A toggle function lets you choose between None, Their Assigned Projects, and All Projects:
- None: This user group cannot see, record, or edit their Actual Time Worked.
- Their Assigned Projects: This user group can view and edit Actual Time Worked in "My Schedule" on projects where the linked resource of the logged-in user was assigned.
- All Projects: This user group can view and edit Actual Time Worked in "My Schedule" for all projects, even if the linked resource of the logged-in user was not assigned to the project originally.
To import actual time worked, the user still needs to have the Import Data right.
Integrations
In the Integrations section, define whether and to what extent the user group is allowed to import and export data and integrate external tools with Meisterplan.
Import & Export
Check the boxes to define which detailed actions this user group is allowed to perform:
- Import Data: Users can import data into Meisterplan using the Quick Import and the Jira Import.
- Export Data: Users can export data using the Export to Excel and export the List and Integrated Pivot Reports to an Excel file.
Integrations
Check the boxes to define which detailed actions this user group is allowed to perform:
Meisterplan APIs
- Access Meisterplan APIs and Connect External Applications: Users can use the REST API and Reporting API, connect external applications such as Zapier, Power BI or Tableau to Meisterplan. Find more information in our Help Center under Imports & Integrations.
Define whether users in this group are allowed to link Meisterplan projects with external tools and view and compare task details in the Information Panel.
A toggle function lets you choose between No Access, Use, Configure:
- No Access: This user group cannot access the Task API or link projects and view task details via the Task Connector.
- Use: This user group can link projects with Meisterplan projects, and view their task details, if the project is in a tool already connected via the Task Connector.
- Configure: This user group can link projects and view task details via the Task Connector, and connect external tools using the Task API.
Note: To import new projects from connected tools, users need to have the Import Data right.
System Administration
In the System Administration section, define whether the user group is allowed to configure basic system and account settings and manage licenses.
System Configuration
Check the boxes to define which detailed actions this user group is allowed to perform:
Add, Edit, and Delete Project-Related Settings
Add, Edit, and Delete Further Settings
-
OBS: Users with this rights option can edit all projects that have the same OBS or OBS unit as the resource linked to them. Users linked to a resource who, for example, belong to the Department Management user group and are responsible for the Software Engineering department can therefore edit all projects that have been assigned to the Software Engineering department.
- Note: In order to edit projects based on the OBS, the respective user must be linked to a resource. You can learn how to do this in the article Configuring User Accounts.
- Skills
- Calendars
- Global Settings, Project Phases and Financial Categories under Manage > Advanced
System Administration
Check the boxes to define which detailed actions this user group is allowed to perform:
- Add, Edit, and Delete Users & User Groups: This user group can manage users and user groups. Note: With this right, a user can change the configuration of all user groups in your system, including granting themselves rights they did not have previously and revoking rights for other users.
-
Manage System SMTPPremium:Allow users to send emails from Meisterplan via a company-owned server and configure a sender address that conforms with your organization (e.g., notificationsfrommeisterplan@yourorganization.com).
-
Manage Self-Service SandboxPremium: Allows users to create a sandbox. You can find this option in the left Sidebar under Manage. See the Self-Service Sandbox article for more information on the Sandbox.
Subscription
Check the box to define which detailed actions this user group is allowed to perform:
- Manage Subscription: Allow users to manage the Meisterplan subscription.