Roles and permissions

Last updated: September 11, 2026

Logging and submitting your own week is open to everyone who has a timesheet. Reading the whole organization's time is a lead and administrator view. Changing settings is a Super Admin job.

Who can do what

Action

Who can do it

Configure Time Tracking

Super Admins

Change time tracking settings

Super Admins

Set anyone's capacity, "Submits time" or start date

Super Admins

Record time off for someone else

Super Admins

Their own timesheet

Log, edit and delete their own hours

Everyone with a timesheet: Super Admins, Creators, Collaborators and Contributors. Collaborators and Contributors need Submits time turned on.

Submit their own week, mark days off, request an unlock

The same people

Choose "All projects" on their timesheet

Super Admins and Creators. Collaborators and Contributors are held to their own projects.

Other people's weeks

Reopen a submitted week

Super Admins. Change Who can unlock a submitted week in Settings to include Creators.

Team tab, open a colleague's week, send a reminder

The same people who can reopen a week

Insights › Time

All seven reports: Utilization, Forward capacity, Where time went, Allotted vs worked, Playbook variance, Time entries and Time data quality

Super Admins, Creators and Integrators

Export entries, and export forward capacity

Super Admins, Creators and Integrators

Ask Aero about time data

Super Admins, Creators and Integrators

Apply a playbook estimate suggestion

Super Admins and Creators

Hours in context

A task's time panel

Everyone. Collaborators and Contributors see only the entries they logged.

A project's Time tab, and a customer account's Time tab

Everyone. The totals are complete for all of them; Collaborators and Contributors see only their own row in the people breakdown, and the page says so.

A project's staffing outlook

Super Admins, Creators and Integrators

Their own profile Time tab

Everyone with a timesheet

A colleague's profile Time tab

Super Admins, Creators and Integrators

Estimates and what customers see

Set allotted time on a task, playbook or module template

Super Admins, Creators, Collaborators and Integrators

Include a project's hours in the weekly summary email

Super Admins, Creators, Collaborators and Integrators

Three things that are true throughout:

  • OnRamp Admin, OnRamp's own support role, can do everything a Super Admin can.

  • API users and Integration users have no timesheet and cannot open any of these screens or reports.

  • Integrators read everything and own nothing: every report and every colleague's hours, but no timesheet of their own.

Placing the Hours invested widget on a portal follows your Portal Studio permissions rather than these.

By role

Super Admin

The full set. Changes settings, sets everybody's capacity, participation and start date, records time off for other people, reopens any week, reads every report and sets estimates.

Creator

A lead's view. Reads everyone's hours, capacity and reports, opens any project or account Time tab in full, sets estimates on tasks and playbooks, and applies playbook estimate suggestions.

Cannot change settings or anybody's capacity. Whether a Creator can reopen weeks, use the Team tab and send reminders depends on Who can unlock a submitted week. On its default, they cannot.

Collaborator

Keeps their own timesheet. Can set allotted time on tasks and playbook templates, and turn on customer-facing hours for a project.

Their timesheet offers only projects they own or are a member of. On a task, project or account they see their own hours rather than the whole team's. No Insights Time reports.

Contributor

Keeps their own timesheet, on the same terms as a Collaborator. No estimates, no customer-facing settings, no Insights.

Integrator

Reads everything and owns nothing. Sees every report and export, every colleague's hours, and can set estimates. Has no timesheet, so no My Time and no place in a reminder or utilization figure.

API user and Integration user

Service accounts. No timesheet and no access to the reports or settings.

Customer users

See only what you have put on their portal, plus the weekly summary email line if that project has it turned on. Never per-person hours, notes or variance.

Submits time

On top of roles, each person has a Submits time setting that a Super Admin controls.

Turned off, it removes them from reminders, from the Team tab and from the unsubmitted-week counts. For Contributors and Collaborators it also hides every place they could log hours. For Super Admins and Creators it stops the reminders but they can still log.

Hours logged before it was switched off are never removed.

Two rules for everyone

  • Nobody can edit anybody else's entries. If a week is wrong, it gets reopened and its owner corrects it.

  • A submitted week is read-only for everyone, including the person who submitted it, until somebody reopens it.