Last date modified: 2026-Jul-27

Instance security

Relativity is modernizing how you manage permissions. The Features tab is becoming the primary way to grant access. As each feature modernizes, Relativity manages its granular permissions from the Features tab. These changes roll out feature by feature over time. The Feature permissions topic explains the model and lists which features are modernized.

With instance security you can apply permissions to system admin groups to limit or grant access to particular system admin objects. You can access the Admin Security dialog from the Instance Details tab.

Users must be assigned to the following two groups in order to have full system administration access:
1. System Administrators - This grants access to all admin-level permissions, such as ARM, queue management, users, and groups tabs.
2. <Customer Name> Admin Group - This gives the user permissions to access all workspaces in the instance, unless the workspace was migrated through ARM or Migrate without the group being properly mapped first.

See the following related pages:

Features

The Features tab lists all features and the permissions they include. For a feature that uses actions, you grant access by selecting actions. An action is the smallest permission unit. For the full model, see Feature permissions.

Feature states

A feature shows one of three states for the selected group. The state reflects how many of the feature's actions you select.

  • Disabled — none of the feature's actions are selected. Feature Action (Disabled)
  • Partially Enabled — some, but not all, of the feature's actions are selected. Feature Actions icon (Partially Enabled)
  • Enabled — all of the feature's actions are selected. Feature Actions (Enabled)

Granular permissions

 

A Note on View Admin Repository

The "View Admin Repository" permission is essential for certain features and supported applications to operate correctly. Apart from the specific features that require this permission, it can also be granted to enable users to generate reports and apply filters to Workspace, Client, Matter, User, and Group objects during report setup.

Granting "View Admin Repository" permission to a user provides access to User and Group objects within the platform. This means that these users can retrieve User and Group information, regardless of whether they are using the mobile app.

The following features and supported applications necessitate the "View Admin Repository" permission:

  • Case Metrics
  • Staging Explorer
  • Workspace Portal
  • Processing Administration
  • Production/Branding Queue
  • ARM

Group Permissions report

With the Group Permissions Report you can easily assess all permission settings applied to any group. Navigate to the Instance Details tab and click Group Permissions Report.

Admin group permission console

You can perform the following actions from this console:

  1. Group - select any group in your Relativity environment from the Group drop-down menu. Click Run to see a list of all system admin permission settings for that group.
  2. Preview - displays the Script Body that defines the selected group's permission settings.
  3. Run - generates Group Permissions Report on the selected group.
  4. Export to File - click Go to export a .CSV file of all the selected group's system admin permission settings.

Reading the Group Permissions Report

  • Group - displays the selected group's name.
  • Permission - displays the name of the system admin object on which system admin rights are granted for the selected group.
  • Type - displays the group's permission level on the object listed in the Permission column.

Uneditable admin permission settings for the Everyone group

All users in any instance of Relativity are members of the Everyone group. The following admin permissions apply to the Everyone group by default, and this permission setting configuration is necessary for your Relativity environment to function properly. You can't add or revoke any of the following permission settings on the Everyone group.

Script and application library permissions

System admins are the only users able to access the following items:

System administrator privileges

The following actions are exclusive to System Administrators and don't require additional permissions:

  • Perform Mass Operations on admin. level objects
  • Permanently delete or recover workspaces from the Recycle Bin
  • Access to the Errors tab on the Admin. level
  • Manage group permissions within Instance details
Return to top of the page
Feedback