Users & Roles
For: Admin, Manager
Your team's access to Tellus is controlled through a role-based permission system. Every user is assigned a role that determines what they can see, edit, and manage. The system is designed to match real-world EHS responsibilities — from the administrator who configures the platform to the employee who just needs to view their assigned chemicals and complete training.
Both Administrators and Managers can access the People & Permissions page, but what they see and can do is different. Administrators have full company-wide access, while Managers have scoped access limited to the site(s) they manage. See What Managers Can Do for specifics.
The Eight System Roles
Tellus includes eight predefined roles that cover the full range of EHS team structures. Each role comes with a specific set of permissions tailored to its responsibilities.
Administrator
Full system access. The Administrator manages everything — company settings, user accounts, billing, and all module features. Every company needs at least one Administrator. This is typically the business owner, office manager, or head of operations.
What Administrators can do:
- Manage all company settings (profile, sites, billing, branding, security)
- Invite, edit, and deactivate users
- Assign roles and manage permissions
- Access all modules across all sites
- Export data and audit logs
- View and manage billing and subscription
Manager
Site-level management and team oversight. Managers oversee day-to-day operations at one or more sites. They manage chemical inventory, approve imports, generate reports, and supervise their site's compliance status.
What Managers can do:
- View and edit chemical inventory at assigned sites
- Approve Quick Import submissions in the review queue
- Generate and export site-level reports
- View compliance dashboards for their sites
- Manage training assignments for their team
- View (but not edit) company-wide settings
Program Coordinator
OSHA-required HazCom program coordinator. Under 29 CFR 1910.1200, every employer with hazardous chemicals must designate a person responsible for the Hazard Communication Program. The Program Coordinator role in Tellus maps directly to this OSHA requirement.
What Program Coordinators can do:
- Create, edit, and approve Written HazCom Plans
- Monitor compliance status across all sites
- Coordinate training programs and ensure coverage
- Review and sign off on chemical inventories
- Manage SDS library and ensure SDS coverage
- Access compliance reports and audit documentation
During onboarding, Tellus asks you to designate your Program Coordinator — this is OSHA Step 1 of building your HazCom program.
Trainer
Training course creation and delivery. Trainers build safety courses, manage lesson content, create quizzes, and track employee completions. This role is ideal for dedicated EHS trainers, safety officers, or third-party training providers.
What Trainers can do:
- Create and edit training courses and lessons
- Build quizzes and assessments
- Assign training to employees
- View training completion reports and transcripts
- Manage certification records
- Access the SDS library (read-only) for course content
Employee
View-and-complete access. Employees are the most common role. They can view the chemical inventory at their assigned site, access SDS documents, complete assigned training, and view published HazCom plans. They cannot edit inventory, manage users, or change settings.
What Employees can do:
- View chemical inventory at their assigned site(s)
- Access and search the SDS library
- Complete assigned training courses and quizzes
- View their training history and certifications
- View published HazCom plans
- Update their own profile information
Viewer
Read-only access. Viewers can see company data but cannot modify anything. This role is useful for executives, auditors, or stakeholders who need visibility into the compliance program without editing rights.
What Viewers can do:
- View chemical inventory (read-only)
- View SDS library (read-only)
- View compliance dashboards and reports
- View published HazCom plans
- View training status summaries
Contractor
Limited site-scoped access. Contractors are external workers who need access to chemical and safety information at specific job sites. Their access is restricted to the sites they've been assigned to, and they can only view data — not edit it.
What Contractors can do:
- View chemical inventory at assigned sites only
- Access SDS documents for chemicals at their sites
- Complete assigned training courses
- View published HazCom plans for their sites
- View their own training history
Contractors cannot see data from sites they're not assigned to, and they have no access to AdminHQ settings.
Consultant
Multi-company admin access. The Consultant role is designed for EHS consultants, safety firms, and managed service providers who manage compliance programs for multiple client companies. A single Consultant login can access all client companies with administrator-level permissions in each.
What Consultants can do:
- Switch between client companies using the company selector in the header
- Full administrator-level access within each client company
- Manage chemical inventory, plans, training, and compliance across clients
- View cross-company dashboards
- Each client company's data remains completely isolated
See Switching Between Companies for how the company selector works.
Role Comparison Table
| Capability | Admin | Manager | Coordinator | Trainer | Employee | Viewer | Contractor | Consultant |
|---|---|---|---|---|---|---|---|---|
| Manage company settings | Yes | -- | -- | -- | -- | -- | -- | Yes |
| Manage users & roles | Yes | Site only | -- | -- | -- | -- | -- | Yes |
| Manage billing | Yes | -- | -- | -- | -- | -- | -- | Yes |
| Manage sites & locations | Yes | -- | -- | -- | -- | -- | -- | Yes |
| Edit chemical inventory | Yes | Yes | Yes | -- | -- | -- | -- | Yes |
| Approve imports | Yes | Yes | -- | -- | -- | -- | -- | Yes |
| View chemical inventory | Yes | Yes | Yes | Read-only | Yes | Yes | Site only | Yes |
| Manage HazCom plans | Yes | -- | Yes | -- | -- | -- | -- | Yes |
| Create training courses | Yes | -- | -- | Yes | -- | -- | -- | Yes |
| Assign training | Yes | Yes | Yes | Yes | -- | -- | -- | Yes |
| Complete training | Yes | Yes | Yes | Yes | Yes | -- | Yes | Yes |
| View compliance dashboards | Yes | Yes | Yes | -- | -- | Yes | -- | Yes |
| Export reports | Yes | Yes | Yes | Yes | -- | -- | -- | Yes |
| Multi-company access | -- | -- | -- | -- | -- | -- | -- | Yes |
People & Permissions Page
The People & Permissions page is organized into tabs along the left side. Which tabs you see depends on your role:
| Tab | Admin | Manager |
|---|---|---|
| Users | Yes | Yes |
| Roles & Permissions | Yes | -- |
| Delegation (Coming Soon) | Yes | -- |
| Sensitive Actions (Coming Soon) | Yes | -- |
Managers see only the Users tab and work within the scope of their assigned site(s). Administrators see all tabs and have full company-wide access. The Delegation and Sensitive Actions tabs are in development and carry a small label in the interface to indicate they're coming soon.
User Management
The Users tab is your team roster. It shows everyone in one place — people who've already joined and people you've invited but who haven't accepted yet — in a single list. Each row shows the person's name, email, role and site access, status, and join date.
Across the top you'll find:
- A seat indicator showing how many of your plan's user seats are in use (e.g.,
12 / 15 users). When you're close to the limit, it warns you how many seats are left; at the limit it showsFull. - An Invite User button, and — on Standard and Pro plans — a Bulk Invite button.
You can search by name or email and filter by role, site, or status (Active, Pending, Deactivated, Suspended). Columns are sortable — click a column header to sort by name, role, status, or join date. Clicking a person's row opens their detail page (pending invitations aren't editable, so they don't open).
Every row has a ... menu with quick actions:
- Copy email — copies the person's email to your clipboard
- Resend invite / Revoke invite — for pending invitations
- Deactivate — for active users (you can't deactivate your own account)
Inviting Users
To add someone to your Tellus account, you send them an invitation:
- Go to AdminHQ > People > Users tab
- Click
Invite User - Enter their email address and full name
- Select a role
- Assign them to a site
- Click
Send Invite
The user receives an email with an invitation link that's valid for 7 days. Once they accept, they appear in your Users list with their assigned role.
You can invite someone who already has a Tellus account (for example, an EHS consultant who works with other companies). They won't need to create a new account — accepting the invitation adds your company to their existing login. See Accept an Invitation for what the experience looks like from the invited user's perspective.
Invite Differences by Role
| Capability | Admin | Manager |
|---|---|---|
| Invite new users | Yes | Yes |
| Assign the Administrator role | Yes | -- |
| Assign to any site | Yes | -- |
| Assign to their own site(s) only | -- | Yes |
| Assign company-wide access (no site) | Yes | -- |
| Add multiple role assignments | Yes | -- |
If you're a Manager assigned to a single site, the site is automatically selected when you invite someone — you don't need to choose it manually. If you manage multiple sites, you'll pick from the sites you're assigned to.
Managers cannot assign the Administrator role. If you need to invite a new administrator, ask an existing administrator to send the invitation.
See Invite a User for the full walkthrough.
Bulk Invite
On Standard and Pro plans, you can invite multiple users at once by uploading a CSV file. Download the template, fill in email addresses, names, roles, and site assignments, then upload and review before sending. The Bulk Invite button appears next to Invite User for plans that include it.
See Bulk Invite Users for details.
Pending Invitations
Outstanding invitations appear right in the Users list alongside joined members, marked with a Pending status badge. From the ... menu on a pending row you can resend the invitation or revoke it if it's no longer needed. This keeps your whole team — invited and active — in one view, so you don't have to hunt for who hasn't accepted yet.
Editing Users
Click any user in the Users list to update their information. What you can edit depends on your role:
| Capability | Admin | Manager |
|---|---|---|
| Edit name and phone number | Yes | Yes (non-admin users at their site only) |
| Change role assignments | Yes | -- (read-only view) |
| Change site access | Yes | -- |
| Deactivate / reactivate users | Yes | -- |
| Edit administrator accounts | Yes | -- |
Managers can update basic contact information (name and phone number) for non-administrator users assigned to their site(s). Role assignments are displayed as read-only — to change someone's role, contact an administrator. Managers cannot edit administrator accounts or deactivate any users.
Deactivating Users
When someone leaves your organization, deactivate their account rather than deleting it. Only Administrators can deactivate or reactivate users. You can deactivate an active user straight from the ... menu on their row in the Users list, or from the Danger zone at the bottom of their detail page. To bring someone back, open their detail page and use the Reactivate user action.
Deactivated users:
- Can no longer log in
- Are removed from active user counts (their seat is freed up)
- Retain their historical data (training records, audit trail entries)
- Can be reactivated later if they return
Site-Scoped Roles
A user's role can vary by site. For example, someone might be a Manager at your main warehouse but an Employee at your satellite office. This is especially useful for multi-site organizations where people have different responsibilities at different locations.
Site-scoped roles are configured from the user's detail page under Roles & Site Access. Each assignment pairs a role with a site — or with All Sites (Company-wide) for roles that apply everywhere. Use Add Role to give someone more than one assignment, and the trash icon to remove one. Every user must keep at least one role. Only Administrators (anyone with permission to edit roles) can change these assignments; Managers see them as read-only.
External Access
If an EHS consultant, support contact, or someone from another company has been granted access to your account, they appear in an External Access section at the bottom of the Users tab — not in your regular roster. This keeps your own team's seat count clean: external users do not count toward your plan's seat limit.
From here, Administrators can:
- See who has external access, which company they belong to, and when they joined
- Review and approve or reject pending access requests from external users
- Revoke an external user's access at any time
The External Access section only appears when you actually have external members or pending requests.
What Managers Can Do
Managers have access to the People & Permissions page, but their view is scoped to the site(s) they manage. Here's a summary of what Managers can and cannot do:
Managers can:
- View users assigned to their site(s)
- Invite new users to their assigned site(s)
- Edit basic information (name, phone) for non-admin users at their site
- View role assignments for users at their site (read-only)
Managers cannot:
- See users at sites they don't manage
- Change anyone's role assignment
- Deactivate or reactivate users
- Edit administrator accounts
- Assign the Administrator role when inviting users
- Invite users company-wide (must assign to a specific site)
- Access the Roles & Permissions, Delegation, or Sensitive Actions tabs
This scoping ensures that Managers have the access they need to onboard and maintain their team, while sensitive operations like role changes and account deactivation remain under administrator control.
Roles & Permissions Tab
Admin only — This tab is not visible to Managers.
The Roles & Permissions tab shows you exactly what each role can do. Roles are listed one per row, each showing its name and how many permissions it currently has. Click a role to expand it and see — or change — its permissions.
Inside an expanded role, permissions are grouped by module (AdminHQ, ChemIQ, SafePath, Plan Builder, and others) so you can see at a glance which features a role can access. Each module group can be collapsed or expanded, and a permission count is shown next to each group.
- Viewing — When you expand a role, you start in view mode and see the permissions that role holds today. A filter box lets you narrow the list by permission name or code.
- Editing — Click
Edit Permissionsto change a role's access. Check or uncheck individual permissions, or useSelect all/Deselect allto toggle an entire module at once. Achangedbadge tracks how many permissions you've adjusted, and changed rows are highlighted so you can review before saving. ClickSaveto apply, orCancelto discard. While editing, anAll/Enabledtoggle lets you focus on just the permissions that are currently switched on.
The Administrator role is system-managed — it always holds every permission and can't be edited. When you expand it, you'll see a clear note explaining this, and its permissions are shown for reference only.
See Manage Roles and Permissions for more.
Delegation (Coming Soon)
Admin only — This tab is not visible to Managers.
The Delegation feature will allow administrators to grant temporary elevated permissions to users — for example, giving a Manager admin access for a week while the primary Admin is on vacation.
Sensitive Actions (Coming Soon)
Admin only — This tab is not visible to Managers.
Sensitive Actions will add extra safeguards around destructive operations like deleting chemicals, exporting data, or removing users. You'll be able to require confirmation steps or approval workflows for these actions.
Availability
All user and role management features are included on every Tellus EHS account ($99/month). Your plan includes up to 15 users.
Related Pages
- Organization Profile — Company details and identifiers
- Sites & Locations — Manage your physical facilities
- Security Settings — Login audit trail and access controls
- Accept an Invitation — For users who received an invite