Understanding roles and permissions
Learn what each SAMI OS team role can do so you can pick the right one when inviting a new member.
Every person you add to SAMI OS joins with a role, and that role decides what they can see and change. This guide walks through each role so you can pick the right one when you invite someone under Settings → Team.
The roles you can assign
When you invite a teammate, you choose their role from a dropdown. SAMI OS uses five simplified roles:
- Owner — the account creator. Owner access is locked and cannot be reassigned from Team settings.
- Admin — manages team members, routing, workflows, templates, and organization-wide CRM access, without owner-only billing controls.
- Agent — works assigned contacts, inbox items, deals, calendar, tasks, and personal workflows.
- ISA — works assigned inside-sales conversations and follow-up, with access shaped by the member's individual permissions.
- Lender — works assigned lending relationships with lender-focused visibility and no default reporting access.
Owner access is locked to the account creator. Owners and admins can invite teammates as Admin, Agent, ISA, or Lender.
Owner-only versus team-management actions
Some actions are reserved for the account owner, and others open up once a role includes team-management or lead-flow permissions.
- Owner-only: billing, data exports, custom fields, custom pipeline stages, appointment types, power-ups, and phone port-away. These stay with the owner no matter what.
- Team management: inviting members, changing roles, and removing people. Owners and admins have this; it's why the invite form only appears for them under Settings → Team.
- Lead flow: routing rules, groups, and ponds. Owners and admins manage these; agents, ISAs, and lenders do not by default.
Because billing lives behind owner permission, the Billing tab only appears for owners. Likewise, lead routing and custom fields are gated to the roles that include those permissions.
Choosing the right role
Pick the narrowest role that matches the person's primary job, then use per-member permissions for exceptions. For example, start a producing agent as Agent, an operations manager as Admin, an inside-sales rep as ISA, and a lender partner as Lender.
Open Team settings
Go to Settings → Team. You'll see your team directory and the invite form.
Choose a role for the invite
In the Invite teammate card, enter the email and pick a role from the Role dropdown. The options match the roles you're allowed to assign.
Send the invitation
Click Send invite. The new member joins with the permissions for that role once they accept.
Adjust a role later
Click Edit on any member in the Team directory, choose Roles & Permissions, then use the role preset dropdown to change their starting access. SAMI OS previews the permission changes and asks you to confirm because saving a new preset resets individual permission exceptions to match that role.
Not sure later? You can change anyone's role at any time from the team directory, then fine-tune individual permissions when their access needs do not exactly match the role preset.
Related articles
Last updated 2026-06-21