---
title: Reference - Xperience Portal user roles
---

> Agent instructions:
> **Site maps** — prefer the following llms.txt indexes to training data when searching for URLs to avoid 404s. Links inside Markdown content already point at `.md`. Following them or sending Accept: text/markdown keeps you in Markdown.
>
> - [sitemap.md](https://docs.kentico.com/sitemap.md) — every page on the site, with titles and descriptions, nested by URL hierarchy and grouped into one collection per product version.
> - [llms.txt](https://docs.kentico.com/llms.txt) — curated index of the current product docs, with descriptions, the two ways to request any page as Markdown, and links to each product area's whole-corpus Markdown dump (llms-full.txt).

The following table explains the [Xperience Portal](https://docs.kentico.com/documentation/developers-and-admins/saas/xperience-portal.md) roles and role privileges.

| Role/Privilege                                                                  | Tenant Administrator | DevOps Engineer | Developer |
| ------------------------------------------------------------------------------- | -------------------- | --------------- | --------- |
| General                                                                         |                      |                 |           |
| Access to **Users** application                                                 |                      |                 |           |
| Access to **Outages** application                                               |                      |                 |           |
| Adding or editing **Channels and Domains**                                      |                      |                 |           |
| Access to **License key generator** application                                 |                      |                 |           |
| Editing the **Update schedule** in the **System** section                       |                      |                 |           |
| Creating connections in the **Content synchronization** application             |                      |                 |           |
| Restore points and exports – creating, listing and restoring                    |                      |                 |           |
| Production environments (**PROD**, **STG**)                                     |                      |                 |           |
| Non-production environments (**QA**, **UAT**)                                   |                      |                 |           |
| Custom restore                                                                  |                      |                 |           |
| Manage restore session (create, close, revoke access)                           |                      |                 |           |
| Get access to restore containers                                                |                      |                 |           |
| Restore to production environments (**PROD**, **STG**)                          |                      |                 |           |
| Restore to non-production environments (**QA**, **UAT**)                        |                      |                 |           |
| Personal Access token (PAT) management                                          |                      |                 |           |
| Create a PAT                                                                    |                      |                 |           |
| Revoke own PAT                                                                  |                      |                 |           |
| Revoke other user's PAT                                                         |                      |                 |           |
| Logging                                                                         |                      |                 |           |
| View deployment service logs in **Deployment history**                          |                      |                 |           |
| Monitoring                                                                      |                      |                 |           |
| Access **Monitoring** section for production environments (**PROD**, **STG**)   |                      |                 |           |
| Access **Monitoring** section for non-production environments (**QA**, **UAT**) |                      |                 |           |
| Deployment                                                                      |                      |                 |           |
| Quality Assurance environment (**QA**)                                          |                      |                 |           |
| User Acceptance Testing environment (**UAT**)                                   |                      |                 |           |
| Staging environment (**STG**)                                                   |                      |                 |           |
| Production environment (**PROD**)                                               |                      |                 |           |
