Roles and capabilities
Windmill has five roles: Admin, HR Admin, Integration Manager, Data Analyst, and Team Member. Managers do not have a separate role. A Team Member can be a manager when the org chart gives them direct or indirect reports.Admin
Admins have all workspace capabilities. They can manage company settings, integrations, members, roles, billing, the org chart, groups, and company features. Admin status does not by itself provide unrestricted access to all employee content. Source permissions and feature-specific privacy rules still apply.HR Admin
HR Admins can manage people operations and many company settings. This includes members, roles, billing, single sign-on (SSO), integrations, the org chart, groups, access delegation, performance review cycles, company-wide 1:1 templates, and supported company features. HR Admin status does not provide the company-wide analytics permission. It also does not provide unrestricted access to employee content.Integration Manager
Integration Managers can manage company integrations, members, roles, billing, and SSO settings. They cannot manage the org chart, groups, access delegation, or performance review cycles. They do not get company-wide employee visibility from this role.Data Analyst
Data Analysts can view analytics for all employees. They cannot manage members, billing, integrations, the org chart, or other company settings.Team Member
Team Members use the standard Windmill features that their company enables. They can view their own information. Managers can also view supported information for people in their reporting subtree.Changing a member’s role
Admins, HR Admins, and Integration Managers can change roles.Go to Settings > Members
Open the member actions menu
Select the new role
Update the role
Org chart scope
The org chart defines each manager’s reporting subtree. This scope includes direct and indirect reports. The reporting subtree is one input to access. It does not override feature privacy or source-system permissions. For example, a manager relationship does not provide access to a private Google document, a private Slack channel, or private 1:1 content. If an employee has no manager, no upstream manager receives access through the org chart. This is normal for a top-level leader. Other role and feature permissions can still apply.Manager changes
A manual manager change updates the old and new reporting scopes.Content visibility
Windmill combines these rules when it checks content access:- Workspace role: Controls administrative actions and specific broad permissions, such as company-wide analytics.
- Org chart: Defines manager and reporting-subtree scope.
- Feature rules: Reviews, Pulses, 1:1s, Recaps, and other features can have their own sharing and privacy settings.
- Source permissions: Connected content can keep the access rules from its source system.
- Delegation: Adds supported manager-like visibility for a selected reporting scope.
1:1 auditability
1:1 content is private by default. Admin or HR Admin status alone does not provide access to all 1:1 notes. When 1:1 auditability is enabled, Windmill can provide read-only access to shared manager-and-report 1:1 history:- Managers can audit 1:1s in their reporting subtree when manager audit access is enabled.
- HR Admins can audit all manager-and-report 1:1s when HR Admin audit access is enabled.
Access delegation
Access delegation gives one member supported manager-like visibility into another person’s reporting subtree. The delegated member can see that person and everyone who reports up to them, directly or indirectly — the same downward scope a manager has. It does not extend upward: the delegated member does not gain visibility into anyone above that person in the org chart. It is useful for an interim manager, an assistant, or a People team member who needs a specific reporting scope without an org-chart change.Delegation limits
Delegation can provide access to supported team data, Recaps, and reports. It does not:- Provide access to 1:1 notes or agendas
- Change Google document or meeting permissions
- Change Slack channel membership
- Let the delegated member impersonate another member
- Add permission to edit Pulses or company settings
- Override feature-specific privacy rules
Adding delegation
Admins and HR Admins can add delegation. The manager and the member who receives access must each have an employee record.Go to Settings > Access Delegation
Select Add delegation
Select the manager scope
Select the member who gets access
Removing delegation
To remove access, go to Settings > Access Delegation and delete the delegation rule. Windmill starts another access refresh after you save the change.Connected-system permissions
For connected content that has source-level access controls, Windmill keeps that permission context. Examples include:- A private Google document stays limited to people who can access it in Google Drive.
- A meeting transcript stays limited by the meeting and source access rules.
- A private Slack channel does not become visible to people outside that channel.
FAQs
What is the difference between Admin and HR Admin?
What is the difference between Admin and HR Admin?
Can I give temporary access without changing a role?
Can I give temporary access without changing a role?
Can I provide company-wide analytics without Admin access?
Can I provide company-wide analytics without Admin access?
What happens to access when someone changes managers?
What happens to access when someone changes managers?
Who can see an employee's weekly recap?
Who can see an employee's weekly recap?
Who can add integrations?
Who can add integrations?
Do archived employees lose access immediately?
Do archived employees lose access immediately?
Why can I not change or remove the last Admin?
Why can I not change or remove the last Admin?
Can I create a custom role?
Can I create a custom role?