Users who can perform app-related actions
In kintone, app-related permissions can be configured at three levels: app level, record level, and field level.
The actions users can perform depend on the permissions granted to them. For details, see the sections below.
App-level actions
The permission to create apps is managed in kintone administration, while permissions to perform other actions are managed in the app settings of each app.
Create apps
The following users can create apps.
- Users who are granted the Create apps permission in the Permission management settings in kintone administration
- cybozu.cn administrators
Users can only duplicate apps for which they have management permission.
Also, when creating an app, a user can select one of the following app groups.
- An app group for which the user is granted the Create apps permission
- The Private app group
Display apps on a portal
All users can display apps on a portal.
However, note that only apps meeting both of the following conditions can be displayed.
- Apps for which the Manage/use/delete apps has been granted in the Permissions for app groups settings for app groups
- Apps for which the user has been granted the Add records or View records permission in the Permissions for app settings
Import from file
Users who have both of the following permissions in the Permissions for app settings can import data from a file.
- Import from file
- Add records
Export to file
Users who have both of the following permissions in the Permissions for app settings can export data to a file.
- Export to file
- View records
Filter views
All users can filter views and bookmark filter conditions.
However, only app administrators can save filter conditions.
Use graph and aggregation features
All users can use graph and aggregation features, as well as bookmark aggregation conditions.
However, only app administrators can save aggregation conditions.
Delete apps
The following users can delete apps.
- App administrators
- cybozu.cn administrators
Change app settings
The following users can change the settings of an app.
- App administrators
- cybozu.cn administrators
Create and edit custom views
The following users can create and edit custom views.
- Users who are both a kintone administrator and an app administrator
- cybozu.cn administrators
Customize apps using JavaScript and CSS
The following users can customize apps using JavaScript and CSS.
- Users who are both a kintone administrator and an app administrator
- cybozu.cn administrators
Generate and view API tokens
The following users can generate and view API tokens.
- App administrators
- cybozu.cn administrators
If the Department access control setting is enabled, the following users can generate and view API tokens.
- Users who are both a kintone administrator and an app administrator
- cybozu.cn administrators
Change which app group an app belongs to
The following users can change which app group an app belongs to.
- App administrators
- cybozu.cn administrators
One of the following app groups can be selected.
- An app group for which the user is granted the Create apps permission
- The Private app group
Note, however, that in-space apps can only have the Public app group set.
Move an app to or from a space
Users who meet all of the following conditions can move an app to or from a space.
- Users who are an administrator of the app to be moved
- Users who have permission to create apps that belong to the Public app group
- In the case of moving an app that already belongs to a space: Users who are administrators of the space to which the app belongs at the time when the action is carried out
For details, refer to the following page.
Changing which space an app belongs to
Record-level actions
View records
The following users can view records.
- Users who have been granted the View records permission in the Permissions for app settings
- If the Permissions for records settings are configured: Users who have been granted the View permission for the record
Add records
The following users can add records.
- Users who have been granted the Add records permission in the Permissions for app settings
Edit records
The following users can edit records.
- Users who have been granted the Edit records permission in the Permissions for app settings
- If the Permissions for records settings are configured: Users who have been granted the Edit permission for the record
Delete records
The following users can delete records.
- Users who have been granted the Delete records permission in the Permissions for app settings
- If the Permissions for records settings are configured: Users who have been granted the Delete permission for the record
Bulk delete records
Users who are an app administrator and have been granted the Delete records permission in the Permissions for app settings can bulk delete records.
Note, however, that bulk deletion is disabled by default.
It must be enabled on the Misc settings screen.
Post/view comments on a record
Users can post and view comments on records they have permission to view.
Display change history
Users can view the change history of records they have permission to view.
Restore previous versions from change history
Users can restore previous change history versions of records they have permission to edit.
Field-level actions
View fields
The following users can view fields.
- Users who have permission to view records
- If the Permissions for fields settings are configured for a field: Users who have been granted the View permission for the field
Edit fields
The following users can edit fields.
- Users who can add or edit records
- If the Permissions for fields settings are configured for a field: Users who have been granted the Edit permission for the field