Articles in this section

Who can change a case's status (permissions)

Published:
Updated:

This article explains which roles and permissions are needed to change a damage case's (Schadenfall) status, and how permissions differ from simply viewing cases.

Two permissions govern the module

Damage Management is controlled by two permissions. Understanding the split explains who can do what.

PermissionAllows
damage-management:viewSee the case list, open the detail view, and read financial data, deadlines, claims, and analytics.
damage-management:transitionCreate and edit cases, change status, set classification, assign an insurer, and manage financial line items and deadlines.

Changing a case's status specifically requires damage-management:transition. Read-only users with only the view permission can watch a case progress but cannot move it.

Which roles have it

Roleviewtransition
SystemAdminYesYes
FleetManagerYesYes
DriverNoNo

SystemAdmin automatically holds every permission in the system. FleetManager is the default operational role and can run the damage workflow end to end. The Driver role is self-service and includes no damage-management permissions at all, so drivers cannot see or transition cases by default.

Note: The transition permission is checked twice for status changes — once when the request reaches the module, and again inside the workflow itself before the state machine runs. A user missing the permission is rejected as forbidden even if they reach the action.

Granting access with custom roles

If someone needs to move cases but should not be a full FleetManager, a SystemAdmin can create a custom role that includes damage-management:transition (and usually damage-management:view so they can open cases). Assign that role to the user.

  1. As a SystemAdmin, create or edit a custom role.
  2. Add the damage-management view and transition permissions.
  3. Assign the role to the users who need to work cases.
Tip: Grant damage-management:view on its own to auditors or finance staff who need to read cases and reports without the ability to change status or edit data.

What "forbidden" looks like

If you attempt to change a status without the transition permission, the action fails with a forbidden result and the status is left unchanged. Ask a SystemAdmin to grant you the permission or to make the change on your behalf.

Related

  • Move a damage case through the workflow
  • Damage-case workflow: statuses and allowed transitions
  • Close a damage case
  • Find damage cases with the list and filters
AH
Written by Alexander Hagemann
Updated:
Access denied
Access denied