Mycroft Platform Roles
Last updated: August 20, 2026
Assign the right role to each teammate to keep your compliance program accurate and audit-ready, without giving people more access than their job requires.
Every teammate is assigned one of four roles: Org Admin, Manager, Analyst, or Auditor. Roles determine what a person can view, create, and manage across Mycroft.
Org Admin:
Full access to the entire platform. Org Admins can create, edit, and manage data everywhere in Mycroft, including controls, policies, frameworks, integrations, computers, app scan, and the Trust Center, as well as manage org-level settings, invite and remove teammates and update roles.
Manager:
The same day-to-day working permissions as an Org Admin: creating and editing controls, policies, and frameworks, connecting integrations, managing computers and app scan, and running the Trust Center. The one thing Managers can't do is access Org Settings, so they can't invite or remove teammates, change roles, or edit org-level configuration.
Analyst:
A read-only role role, built for contributing to compliance work without managing it. Analysts can view controls, policies, frameworks, and evidence, and can leave comments, but can't create, edit, activate, or manage records anywhere in the platform.
Auditor:
A read-only role for reviewing compliance evidence. Similar to the Analyst role but designated for external auditor access. Auditor access is meant for using assigned audit projects to review your program against a compliance standard, not for making changes to it.