AIM provides a flexible, role-based access structure that ensures every user only sees and manages what theyβre responsible for - making it easy to maintain security, clarity, and control across multiple clients, projects, and sites.
Access Hierarchy Overview
1. Client Super Administrator
Full control across one or more clients and everything below
Can create new clients
Can create and manage Client Administrators and Client Users
Can be assigned to multiple clients
Accesses all projects, sites, and users within assigned clients
Can masquerade as users of equal or lower permission levels
Can manage sub-clients and control site visibility
Has access to client-level settings, and permissions
2. Client Administrator
Manages users, projects, and sites within a single client
Can create other Client Administrators and Client Users
Automatically sees all sites associated with their assigned client
Can create/edit projects and sites (if permission is enabled)
Cannot access or create other clients
Cannot assign users to multiple clients
Cannot view outside their assigned client
3. Client User
Limited to specific sites they are assigned to
Can view and edit content only on explicitly shared sites
Cannot create projects, sites, or clients
Cannot invite or manage other users
Cannot see other sites within the client unless explicitly granted
Ideal for field teams, contractors, or collaborators with scoped access needs
4. Site Share (Non-User Access)
Temporary access via secure URL β no login required
View-only access to a specific site model
Can be customised to show/hide tags, documents, floorplans, etc.
Can be set to expire after a defined period
Perfect for external stakeholders or partners who need visual access without full user accounts
Role Comparison Table
Role | Login Required | View Sites | Edit Sites | Create Users | Multi-Client Access | Expiry Control | Masquerade |
Site Share | π« No | β Yes (limited) | π« No | π« No | π« No | β Yes | π« No |
Client User | β Yes | β Shared Only | β Yes | π« No | π« No | π« No | π« No |
Client Administrator | β Yes | β All (within client) | β Yes | β Yes (within client) | π« No | π« No | β Yes |
Client Super Admin | β Yes | β All (multi-client) | β Yes | β Yes (all roles) | β Yes | π« No | β Yes |
Summary
Use Site Share for view-only, no-login access (with expiry)
Use Client User for focused collaborators with specific site access
Use Client Administrator for client-level control
Use Client Super Administrator for full, multi-client oversight