Overview
Client Portal permissions control what a contact can do after they're invited to the portal. They let you give each person the right level of access — a payroll admin who only uploads files doesn't need the same access as a primary contact who manages their whole team.
Every invited user automatically gets baseline access: they can sign in, and they can see and complete their client tasks. On top of that, you choose from four permissions.
When to adjust permissions
A contact's role changes — for example, a new office manager takes over portal user management.
A client asks that only certain people see team messages or shared files.
You want a primary contact to invite their own coworkers instead of routing every invite through your team.
Permission options
Permission | What it allows |
View and upload shared files | Open shared files, upload files, and use protected file actions in the portal. |
View all team communications | View client messages in the portal. |
Add, manage, or delete other users | Invite portal users, change their permissions, and remove them. |
Important: Task visibility and completion is part of the baseline access every portal user gets when invited. It cannot be removed.
Where to set permissions
You can set portal permissions in four places:
When you invite the contact. Check the permissions in the Invite to Client Portal dialog before you click Send Invitation. See Setting Up and Inviting Clients.
In an invite automation. If you invite contacts through an automation, set the permissions in the automation's configuration.
From the Client Portal. Open the portal and update the user's permissions there.
By the client themselves. A portal user with Add, manage, or delete other users can change permissions for other users in their portal.
Update permissions for an existing portal user
Open the company record and access the Client Portal.
Go to the portal's user management area.
Find the user and open their permission settings.
Check or uncheck permissions, then save.
Troubleshooting
A client can't open shared files. Check that View and upload shared files is enabled for their user.
A client can't see messages. Enable View all team communications for their user.
A client can't invite coworkers. They need Add, manage, or delete other users. Only give this to trusted primary contacts.
A client sees tasks you didn't expect. Task access is baseline for all portal users. If a task shouldn't be visible, check that it isn't set as a client task.
Related articles
Client Portal Overview
Setting Up and Inviting Clients
Client Portal Live View
