> For the complete documentation index, see [llms.txt](https://docs.exads.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.exads.com/ad-server/admin/saas-admin-users.md).

# Users

## Roles and Users

For Ad Server use, role-based access enables users to have varying levels of permissions when accessing the Admin Panel.

* A **Role** is associated with certain permissions which allow it to perform selected actions in the Admin Panel. For system roles (Super Administrator, Advertiser, Publisher) these permissions cannot be edited.
* A **User** is assigned a role, which gives them the permissions associated with it.
  * Each user can only have one role, but each role can have many users.

Roles and users are divided between those on the **Ad Server** side and those on the [**Client** side](/ad-server/accounts/saas-creating-users.md#client-roles).

* **Ad Server** roles administer the ad server and accounts.
* **Client** roles are either **Advertiser** or **Publisher** or both.

In EXADS, there is also an **EXADS Admin** who can create, edit, and delete the role of **Super Administrator** for the network.

{% hint style="info" %}
Users on the **Client** side will only have access to the [Public API](/api/exads-public-api/api-manual-overview.md), while users on the **Ad Server** side will have access to the Network API and [Public API](/api/exads-public-api/api-manual-overview.md).
{% endhint %}

### Ad Server Roles

![saas-roles](https://2551497454-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FbWd08bYtHMw1HqDKFpBf%2Fuploads%2FFoSyGtY1T0o9wjTYd7Vm%2Fad_server_roles.png?alt=media\&token=fe58bd92-a01a-436f-9fce-291201d5c88e)

**Ad Server** roles administer the Ad Server and its accounts.

#### Super Administrator

The Super Administrator owns the Ad Server and can never be removed from it, so every network must have at least one user with this role. Their permissions allow them to:

* View all stats and data across the Ad Server.
* Create, edit and archive all **Ad Server** users and **Client** accounts.
* Assign roles to **Ad Server** users and **Client** accounts.
* Assign accounts to Account Managers.
* Enable or disable access to the Ad Server for all users and accounts.

{% hint style="info" %}
The Super Administrator is a **System** role that can never be removed, and whose permissions cannot be edited, but it can be passed on to a different user.
{% endhint %}

#### **Administrator**

The Administrator manages the Ad Server, but does not create it. They can be removed from an Ad Server by the **Super Administrator**. Their permissions allow them to:

* View all stats and data across the Ad Server.
* Create, edit and archive all **Ad Server** users and **Client** accounts.
* Assign roles to **Ad Server** users and **Client** accounts.
* Assign accounts to Account Managers.
* Enable or disable access to the Ad Server for all users and accounts.

#### **Finance**

A user with a role of Finance essentially manages all payments coming in and out of the Ad Server through Advertisers and Publishers respectively. They can create, edit and view **Client** accounts, but cannot create any Ad Server roles. They can also create and view invoices and associated financial artifacts such as credit notes, chargebacks and refunds.

In addition, as with **Super Administrators** and **Administrators**, they have access to **Client** payments and the extra settings that go along with them.

#### **Compliance**

A user with a role of Compliance ensures that Publishers and Advertisers follow the Ad Server guidelines. The key element to this is to verify the advertisers' campaigns and approve or reject them to run on the publishers' websites. In addition, they can create, edit and view **Client** accounts, but also assign Account Managers to **Client** accounts.

**Super Administrators** and **Administrators** also have the Compliance functionality.

{% hint style="info" %}
[Compliance functionality](/ad-server/saas-campaigns-tab/saas-compliance.md#compliance-functionality) is only available if Compliance is enabled for the Ad Server.
{% endhint %}

#### **Agent**

The Agent can create, edit and view **Client** accounts, but cannot create any Ad Server roles. They can also assign accounts to Account Managers.

#### **Account Manager & Business Developer**

Account Managers and Business Developers manage **Client** accounts that are assigned to them by Administrators or Agents:

* They can only access the accounts of Advertisers and Publishers that are assigned to them.
* Their own **Dashboards** and **Statistics** tabs only show data for the accounts assigned to them.
* Account Managers can also create Advertiser/Publisher accounts that are assigned to themselves.

{% hint style="info" %}
Any Admin User can be assigned to manage an account. For Super Administrators, Administrators and Agents this will not limit their view or role permissions in the Admin Panel. The Account Manager role is the only role that is restricted based on the accounts they are assigned to and managing.
{% endhint %}

## Users Table

As an Administrator or Super Administrator, in the **Admin Users** tab, you can see a list of all the users on your network.

![Admin users](https://2551497454-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FbWd08bYtHMw1HqDKFpBf%2Fuploads%2Fy2t3gNWF26Nt1EmK8LmV%2Fsaas-admin-users.png?alt=media\&token=54dad163-1905-4c81-828e-dcd4af8bea88)

## Creating/Editing Users

![create user](https://2551497454-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FbWd08bYtHMw1HqDKFpBf%2Fuploads%2FwqkAsan1z5VTzHZi7Vus%2Fsaas-add-new-admin-user.png?alt=media\&token=d239d118-49ce-4f4c-96b9-f4b509f3f049)

As an Administrator/Super Administrator in the **Admin Users** tab, you can create and edit other users to help manage accounts on your network.

### Creating Users

1. Click on **Users** under the **Admin** tab.
2. Click **New User**.
3. Fill in the **Add New User** Form:

| Item         | Description                                                                                                                                                                                                    |
| ------------ | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Username\*   | Enter a username between 3 and 256 characters. Choose this carefully as you will not be able to edit it later.                                                                                                 |
| First Name\* | Enter a first name for the user.                                                                                                                                                                               |
| Last Name    | Enter a last name for the user.                                                                                                                                                                                |
| Email\*      | Enter a valid email for the user.                                                                                                                                                                              |
| Role\*       | Choose whether the user is an **Account Manager**, **Administrator**, **Agent**, **Compliance**, or **Finance**. See [Ad Server Roles](#ad-server-roles) for information on what permissions these roles have. |

\*Required fields

4. When you have filled in the form, click **ADD NEW USER**.
5. Once you click **ADD NEW USER** an email will be sent to the user inviting them to join the Ad Server with the role you have assigned to them.
   * Once they sign up using the link in the email, they will be signed in to the Admin Panel for their new role.
6. You will be taken back to the **Admin User** page and will see the new user at the top of the list.

### Editing Users

Once admin users have been created, you can click the **Edit** icon beside any of them in the **Admin Users** tab, to change some of their details.

![edit user](https://2551497454-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FbWd08bYtHMw1HqDKFpBf%2Fuploads%2FG0dwFA73XAliyQeEo97x%2Fsaas-edit-admin-user3.png?alt=media\&token=e37ac919-d9ce-4dcf-bb12-7cf85edde832)

{% hint style="warning" %}
You cannot change the **Username** once an account has been created.
{% endhint %}

### Archiving/Restoring Users

![Archiving Users](https://2551497454-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FbWd08bYtHMw1HqDKFpBf%2Fuploads%2FEgqlx3eiqDkfjpVUpSVy%2Fsaas-admin-tab-archive-user.png?alt=media\&token=70e41c9c-2f94-430b-8685-a8f864cecaa6)

As an Administrator or Super Administrator, you can archive users in the **Admin Users** tab. Archived users will no longer be able to access your Ad Server.

* To archive a user, click the **Archive** button to the left of the user's name in the **Admin Users** list.
* Once a user has been archived, you can restore them by clicking the **Restore** button.

{% hint style="info" %}
As a Super Administrator, you cannot archive yourself or other Super Administrators (to prevent Admin Users getting locked out of their accounts).
{% endhint %}

{% hint style="info" %}
As an Administrator, you cannot archive yourself, but you can archive other Administrators.
{% endhint %}

## **Searching and Arranging the Users List**

![account view](https://2551497454-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FbWd08bYtHMw1HqDKFpBf%2Fuploads%2F2UCNqxB2azjfWWZAYGre%2Fsaas-users-tab-sorting.png?alt=media\&token=7775e392-05e4-4dae-942f-3b1860b53d6d)

You will see a list of all the users on your network sorted chronologically by last date modified.

* You can choose how many rows you wish to see on each page using the **Show X entries** drop-down in the top left.
* You can sort the information in the users list using the arrows beside each header.

### Filtering the Users List

![account view](https://2551497454-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FbWd08bYtHMw1HqDKFpBf%2Fuploads%2Fi2nxvDLavMjdyhzTVrYB%2Fsaas-users-tab-filter.png?alt=media\&token=57ec16b3-f76a-4bbf-a4c0-9d975674e920)

You can filter the users in the users list by clicking **+ADD FILTER** at the top of the screen.

* **Date Created**: Filter by the date the user was created:
  * Select a single date from the calendar.
* **Last Login**: Filter by the most recent date that the user was logged into:
  * Select a single date from the calendar.
* **Role**: Filter by the role:
  * Select the roles by ticking the checkboxes.
  * Tick **Show selected only** to exclude unselected roles from the list.
* **Status**: Filter by **Active**, or **Archived**.
* **2FA**\*: Filter by whether the user has two-factor authentication **Enabled** or **Disabled**.

\*The **2FA** is only available if two-factor authentication is enabled for the Ad Server for Admin Users.

Click **APPLY** and the Users table will be filtered according to what you select.

You can add more filters by clicking **+ADD FILTER** again.

Click **RESET FILTERS** to remove any filters you have added.

### Column Settings

![account view](https://2551497454-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FbWd08bYtHMw1HqDKFpBf%2Fuploads%2FUJ3O738cjVITTs1qeQ7m%2Fsaas-users-tab-column-settings.png?alt=media\&token=9db35f0b-24aa-4d87-840c-6ff23efbf7f2)

On the top right, click the **General** drop-down to access the column settings, where you can select which columns to show in the Users table. You can choose from:

* 2FA: (Disabled by default)
* Accounts Managed
* Date Created
* Email
* First Name
* Last Login
* Last Name
* Role
* Status
* User ID
* Username


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://docs.exads.com/ad-server/admin/saas-admin-users.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
