Roles and permissions
Last updated: September 11, 2026
Logging and submitting your own week is open to everyone who has a timesheet. Reading the whole organization's time is a lead and administrator view. Changing settings is a Super Admin job.
Who can do what
Action | Who can do it |
|---|---|
Configure Time Tracking | Super Admins |
Change time tracking settings | Super Admins |
Set anyone's capacity, "Submits time" or start date | Super Admins |
Record time off for someone else | Super Admins |
Their own timesheet | |
Log, edit and delete their own hours | Everyone with a timesheet: Super Admins, Creators, Collaborators and Contributors. Collaborators and Contributors need Submits time turned on. |
Submit their own week, mark days off, request an unlock | The same people |
Choose "All projects" on their timesheet | Super Admins and Creators. Collaborators and Contributors are held to their own projects. |
Other people's weeks | |
Reopen a submitted week | Super Admins. Change Who can unlock a submitted week in Settings to include Creators. |
Team tab, open a colleague's week, send a reminder | The same people who can reopen a week |
Insights › Time | |
All seven reports: Utilization, Forward capacity, Where time went, Allotted vs worked, Playbook variance, Time entries and Time data quality | Super Admins, Creators and Integrators |
Export entries, and export forward capacity | Super Admins, Creators and Integrators |
Ask Aero about time data | Super Admins, Creators and Integrators |
Apply a playbook estimate suggestion | Super Admins and Creators |
Hours in context | |
A task's time panel | Everyone. Collaborators and Contributors see only the entries they logged. |
A project's Time tab, and a customer account's Time tab | Everyone. The totals are complete for all of them; Collaborators and Contributors see only their own row in the people breakdown, and the page says so. |
A project's staffing outlook | Super Admins, Creators and Integrators |
Their own profile Time tab | Everyone with a timesheet |
A colleague's profile Time tab | Super Admins, Creators and Integrators |
Estimates and what customers see | |
Set allotted time on a task, playbook or module template | Super Admins, Creators, Collaborators and Integrators |
Include a project's hours in the weekly summary email | Super Admins, Creators, Collaborators and Integrators |
Three things that are true throughout:
OnRamp Admin, OnRamp's own support role, can do everything a Super Admin can.
API users and Integration users have no timesheet and cannot open any of these screens or reports.
Integrators read everything and own nothing: every report and every colleague's hours, but no timesheet of their own.
Placing the Hours invested widget on a portal follows your Portal Studio permissions rather than these.
By role
Super Admin
The full set. Changes settings, sets everybody's capacity, participation and start date, records time off for other people, reopens any week, reads every report and sets estimates.
Creator
A lead's view. Reads everyone's hours, capacity and reports, opens any project or account Time tab in full, sets estimates on tasks and playbooks, and applies playbook estimate suggestions.
Cannot change settings or anybody's capacity. Whether a Creator can reopen weeks, use the Team tab and send reminders depends on Who can unlock a submitted week. On its default, they cannot.
Collaborator
Keeps their own timesheet. Can set allotted time on tasks and playbook templates, and turn on customer-facing hours for a project.
Their timesheet offers only projects they own or are a member of. On a task, project or account they see their own hours rather than the whole team's. No Insights Time reports.
Contributor
Keeps their own timesheet, on the same terms as a Collaborator. No estimates, no customer-facing settings, no Insights.
Integrator
Reads everything and owns nothing. Sees every report and export, every colleague's hours, and can set estimates. Has no timesheet, so no My Time and no place in a reminder or utilization figure.
API user and Integration user
Service accounts. No timesheet and no access to the reports or settings.
Customer users
See only what you have put on their portal, plus the weekly summary email line if that project has it turned on. Never per-person hours, notes or variance.
Submits time
On top of roles, each person has a Submits time setting that a Super Admin controls.
Turned off, it removes them from reminders, from the Team tab and from the unsubmitted-week counts. For Contributors and Collaborators it also hides every place they could log hours. For Super Admins and Creators it stops the reminders but they can still log.
Hours logged before it was switched off are never removed.
Two rules for everyone
Nobody can edit anybody else's entries. If a week is wrong, it gets reopened and its owner corrects it.
A submitted week is read-only for everyone, including the person who submitted it, until somebody reopens it.