Team Level Roles
Team Level Roles
Team level roles are available on Enterprise and Pro plans.
Team level roles are designed to provide a comprehensive level of control and access to the team as a whole. These roles are assigned to individuals and are applicable to all projects within the team. This allows for a centralized level of control and access, while still maintaining the security and integrity of the team as a whole.
While the Enterprise plan supports all the below roles, the Pro plan does not support the Security and Contributor roles.
All Permissions
- Read
- Write
- No Permissions
| Resource | Owner | Member | Developer | Viewer | Billing | Security | Contributor |
|---|---|---|---|---|---|---|---|
| Activity Log Event | |||||||
| AI Gateway Guardrails | |||||||
| AI Gateway Private Models | |||||||
| AI Gateway Rules | |||||||
| AI Gateway Virtual Models | |||||||
| Alert Rules | |||||||
| Alerts | |||||||
| Alias | |||||||
| Analytics Sampling | |||||||
| Analytics Usage | |||||||
| Audit Log | |||||||
| Automation | |||||||
| Billing Information | |||||||
| Blob Store Secrets | |||||||
| Concurrent Builds | |||||||
| Data Cache Billing Settings | |||||||
| Default Deployment Protection | |||||||
| Deployment Policy | |||||||
| Domain | |||||||
| Domain Accept Delegation | |||||||
| Domain Authentication Codes | |||||||
| Domain Certificate | |||||||
| Domain Move | |||||||
| Domain Purchase | |||||||
| Domain Record | |||||||
| Domain Transfer In | |||||||
| Drain | |||||||
| Endpoint Verification | |||||||
| Flags | |||||||
| Global Config | |||||||
| Global Config Item | |||||||
| Global Config Schema | |||||||
| Global Config Token | |||||||
| Integration | |||||||
| Integration Configuration | |||||||
| Integration Configuration Project | |||||||
| Integration Configuration Transfer | |||||||
| Integration Pull Request | |||||||
| Integration SSO Session | |||||||
| Integration Vercel Configuration Override | |||||||
| Invoice | |||||||
| Invoice Email Recipient | |||||||
| Invoice Language | |||||||
| IP Blocking | |||||||
| KMS Issuer | |||||||
| KMS Project Grant | |||||||
| KV Database Secrets | |||||||
| Log Drain | |||||||
| Monitoring | |||||||
| Monitoring Alert | |||||||
| Monitoring Chart | |||||||
| Monitoring Query | |||||||
| Monitoring Settings | |||||||
| Observability Configuration | |||||||
| Otel Endpoint | |||||||
| Payment Method | |||||||
| Postgres Database Secrets | |||||||
| Preview Deployment Suffix | |||||||
| Private Network | |||||||
| Project Transfer In | |||||||
| Rate Limit | |||||||
| Remote Cache Artifact | |||||||
| Remote Cache Artifact Usage Event | |||||||
| Remote Caching | |||||||
| SAML Configuration | |||||||
| Secret | |||||||
| Secure Compute | |||||||
| Shared Environment Variable | |||||||
| Shared Production Environment Variable | |||||||
| Space | |||||||
| Spaces Run | |||||||
| Spend Management | |||||||
| Team Git Exclusivity | |||||||
| Team Invite | |||||||
| Team Invite Code | |||||||
| Team Membership | |||||||
| Usage | |||||||
| Vercel Blob | |||||||
| Vercel KV | |||||||
| Vercel Postgres | |||||||
| Web Analytics Plan | |||||||
| Webhook | |||||||
| Webhook Event |
Team resource permissions
Last updated May 6, 2026
Cross-link map: Team Level Roles (/docs/rbac/access-roles/team-level-roles)
Semantically closest pages
- Project Level Roles — Learn about the project level roles and their permissions.
- Role-based access control (RBAC) — Learn how to manage team members on Vercel, and how to assign roles to each member with role-based access control (RBAC)
- Managing Team Members — Learn how to manage team members on Vercel, and how to assign roles to each member with role-based access control (RBAC)
- Access Roles — Learn about the different roles available for team members on a Vercel account.
- Extended permissions — Learn about extended permissions in Vercel's RBAC system. Understand how to combine roles and permissions for precise access.