Access control

Overview

MATTR VII uses Role-Based Access Control (RBAC) to manage permissions and access within a tenant. Each role grants access to specific capabilities, ensuring that users or clients only have access to the functionalities they need. Below is a list of available roles and their descriptions:

  • Tenant admin: Has full access to all tenant capabilities. This role is assigned to the default client when a new tenant is created.
  • Issuer: Has access to capabilities required for issuing and managing credentials of different formats across different channels.
  • Verifier: Has access to capabilities required for verifying credentials of different formats across different channels.
  • DTS provider: Has access to capabilities required for managing a Digital trust service (DTS).
  • DTS consumer: Has access to capabilities required to consume DTS information from a tenant.
  • Auditor: Has read-only access to analytics data.

Role permissions

Tenant admin permissions

The following list details the MATTR VII capabilities available to users and clients assigned with the Tenant admin role. This includes all tenant capabilities:

Platform management

Digital trust service

Credential issuance

Credential management

Credential verification


Issuer permissions

The following list details the MATTR VII capabilities available to users and clients assigned with the Issuer role:

Platform management

Digital trust service

Credential issuance

Credential management


Verifier permissions

The following list details the MATTR VII capabilities available to users and clients assigned with the Admin role:

Platform management

Digital trust service

Credential verification


DTS provider permissions

The following list details the MATTR VII capabilities available to users and clients assigned with the DTS provider role:

Platform management

Digital trust service


DTS consumer permissions

The following list details the MATTR VII capabilities available to users and clients assigned with the DTS consumer role:

Digital trust service


Auditor permissions

The following list details the MATTR VII capabilities available to users and clients assigned with the Auditor role:

Platform management


* Partial support or not available for users using MATTR Portal; users or clients using MATTR VII API are not affected.

Additional resources

Tutorials