Roles, Permissions & Security

Roles, Permissions & Security 

Roles, Permissions & Security

 

What roles are available in CAD ROOMS?

Workspace Roles:
  • Owner: Full control, billing management, can delete workspace.
  • Admin: Manages members and projects, cannot manage billing or delete workspace.
  • Member: Can create/edit in assigned projects.
Project Roles:
  • Admin: Full project control (settings, members, files).
  • Collaborator: Can upload, edit, and check-in/out files.
  • Viewer: Read-only access to files.
External:
  • Guest: Restricted, file-level access only (view/measure).

What's the difference between Workspace roles and Project roles?

  • Workspace Roles control global settings, billing, and membership. They determine if you are in the company space.
  • Project Roles control what you can do inside a specific project (e.g., can you edit CAD files or just view them?).
Note: Workspace Owners/Admins are automatically Project Admins in all projects.

Can I customize roles or permissions?

Standard plans come with pre-defined roles to ensure security best practices.
For Enterprise customers, we can configure custom roles tailored to specific workflows (e.g., "Approver" or "External Contractor"). Contact support@cadrooms.com for custom role configuration.

How do I change someone's role?

Workspace Role:
  1. Go to Settings → Members.
  1. Find the user and use the dropdown to select Owner, Admin, or Member.
Project Role:
  1. Open the Project.
  1. Go to the Members tab.
  1. Click the dropdown next to their name to change between Admin, Collaborator, or Viewer.

What can a Guest do?

Guests have strictly limited access:
  • They can: View, measure, explode, and add annotations to specific files shared with them.
  • They cannot: See other project files, delete files, view version history, or see workspace members.
  • They do not consume a paid seat.

How do I remove someone from a Workspace or Project?

  • From Workspace: Go to Settings → Members, find the user, click the three dots (...), and select Remove from Workspace. This revokes their access to everything.
  • From Project: Open the Project, go to Members, find the user, and click Remove. They remain in the workspace but lose access to that specific project.

Is my data secure in CAD ROOMS?

Yes. We prioritize enterprise-grade security:
  • Encryption: AES-256 encryption at rest and TLS 1.2+ in transit.
  • Compliance: SOC 2 Type II and ISO 27001 certified.
  • Infrastructure: Hosted on AWS (Amazon Web Services) with robust physical and network security.

Where is my data stored?

Your data is stored in secure AWS data centers. By default, we use servers optimized for your region to ensure speed and compliance.
Enterprise customers can request specific data residency regions (e.g., EU-only hosting) to meet local regulations.

Does CAD ROOMS comply with ITAR or other regulations?

CAD ROOMS supports compliance workflows (like EAR/Dual-Use) through granular access controls and detailed audit logs.
For strict ITAR compliance or government-level security, we offer Private Cloud and On-Premise solutions via our Enterprise plan. Contact sales to discuss your specific regulatory needs.

Can I control who sees specific files?

Yes.
  • Project Access: Only members added to a project can see its files.
  • Guest Access: You can share individual files with external guests without giving them access to the whole project.
  • Granular Permissions: Project roles (Viewer vs. Collaborator) determine if a user can just see files or also edit/delete them.

How does CAD ROOMS protect my intellectual property?

You retain 100% ownership of your IP. CAD ROOMS claims no rights to your designs.
We protect your IP via:
  • Audit Logs to track every view, download, and export.
  • Secure Sharing that allows view-only access for vendors without sending source files.

What happens to my data if I cancel my subscription?

If you cancel your subscription:
  1. Grace Period: Your data remains accessible in a "read-only" state for a limited time (typically 30 days) to allow for export.
  1. Deletion: After the grace period, your data is permanently deleted from our servers in accordance with our data retention policy.
We strongly recommend exporting your projects before cancelling.