Access layers
1
Workspace membership
The authenticated person must belong to the active organization and Oximy workspace.
2
Product access
The workspace must have access to the requested Visibility, Sidekick, or Relay feature.
3
Role
Administrative changes require the appropriate workspace role. Many configuration, billing, access, and policy actions are administrator-only.
4
Data scope
Managers can receive department-level views where supported, while company-wide data and actions remain restricted.
5
Product settings
Visibility access policies, Sidekick approvals and budgets, and Relay project settings can further limit what someone can see or do.
Use View as without changing your role
View as changes the data scope and navigation shown for the task you are performing. Depending on your access, the menu can offer your role view, Myself, or a department or team you manage. Changing this view does not change your workspace role or grant additional administrative authority. Use only the choices offered in the menu; a saved or manually edited URL does not provide access to another scope.Product-specific control
- Visibility scopes organization data and financially sensitive fields.
- Sidekick applies sharing, tool grants, approvals, execution policy, and workspace configuration.
- Relay restricts project, key, provider, routing, and limit changes to authorized administrators.
What happens when access cannot be confirmed
Oximy does not show the page or complete the action when it cannot confirm the required workspace, product access, data scope, or role.Auditability
Successful administrative and public API changes record who or which API key made the change. Visibility, Sidekick, and Relay also keep their own relevant activity history.Review audit history
Learn what the shared audit log records and how administrators inspect it.