The six permission levels to define before build
Most workflows can be scoped with six permission levels. Write each separately instead of using a vague label like "CRM access" or "website access."
1. Read permissions
Read permission means the agent can view approved information: CRM fields, call notes, product pages, SOPs, spreadsheets, reports, templates, or public pages. Start narrow. Give the agent only the source material required.
2. Draft permissions
Draft permission means the agent can prepare output for review. This is usually the safest starting point. The agent may draft an email, CRM summary, article outline, management brief, support response, task list, or website recommendation. The output stays a draft until approved.
3. Recommend permissions
Recommend permission means the agent can suggest a next action but cannot take it alone. It may recommend which opportunities need follow-up, which pages need review, or which workflow should be improved next.
4. Update permissions
Update permission means the agent can change a record or system. Treat this as higher risk. Low-risk updates may include adding an internal note, tagging a draft, or logging that a review happened. Higher-risk updates include changing deal stages, customer records, pricing fields, permissions, public content, or delivery commitments.
5. Send or publish permissions
Send and publish permission means the agent can communicate externally or change public material. This should not be granted by default. Customer emails, proposals, website pages, newsletters, proof claims, pricing pages, legal wording, privacy text, and public schema should usually require human review. Use AI Approval Gates for Business Automation to map the stop point.
6. Delete and admin permissions
Delete, credential, billing, user-management, DNS, integration, and admin permissions should stay blocked unless there is a specific, tested reason to allow them. Usually, the agent can prepare a recommendation and a human can make the admin change.