Permissions

Kaya applies coarse route-level roles rather than configurable per-object permissions.

CapabilityViewerEditorAdmin
Read authenticated operational modulesYesYesYes
Create, edit and delete operational recordsNoYesYes
Create Secure Send packagesNoYesYes
Reveal a full licence keyNoYesYes
Manage users, settings, lists and importsNoNoYes
View Audit Logs and Remote recordingsNoNoYes
Open another user's private Secret VaultNoNoNo

Some safe actions, including IP ping and manual network-monitor refresh, are available to any authenticated user. Compute and backup agent endpoints use their own bearer tokens. Secure Send recipient access uses its gateway factors rather than a Kaya role.

Route dependencies named require_user, require_editor and require_admin perform enforcement. Permissions are manually attached per route; there is no object ownership layer across ordinary modules. Audit sensitive changes and grant Admin only where administration is required.