---
title: "Grant access to your box"
canonical: "https://support.appfire.com/space/SPM/2400878722/Grant%20access%20to%20your%20box"
format: markdown
---
> Macro (aura-html)

## What will I learn on this page?

> 💡 On this page, we will show you how to assign (as a BigPicture admin) box permissions to users or groups.

You will learn about:

- App **access** settings.
- **Role** configuration settings.
- Assign a role to a user or group.

After reviewing this page, you’ll understand how to:

- Grant access to BigPicture.
- Access box role configuration settings.
- Assign box roles to users or groups.

## Why should I grant access / assign roles?

Defining roles and granting access in BigPicture ensures that the right people can see and manage the right information in BigPicture. By assigning roles, you control who can (and who cannot) plan work, update progress, or adjust settings, which helps keep your projects organized and secure. Clear access rules also reduce errors and confusion, making it easier for teams to collaborate effectively from the start.

## BigPicture app access step-by-step

Review the following video to learn how to grant BigPicture access to users and groups.


The first step in configuring BigPicture for users or groups is to grant them app access. Use the following steps to assign the **App User** role to an individual:

1. Click the wrench icon in the upper right-hand corner and select **Security**.
2. Five app role permissions are displayed, along with descriptions:
  1. **App Admin** - Administrative access to every box and to business administration.
  2. **App Financial Admin** - Full access to the Financials module (only for boxes the user has access to) and can edit hourly rates.
  3. **App Financial Viewer **- Access to the Financials module (only for boxes the user has access to) without edit permissions.
  4. **App Resource Admin** - Basic access to BigPicture (same as an App User) and additional access to the Resources module.
  5. **App User** - Basic access to BigPicture that is dependent on individual permissions at the box level. (See the following section, Role configuration settings.)
3. Expand **App User** > **Users **and locate the appropriate user in the dropdown menu. Note that you can search for a user by typing the first few letters of their name.
4. Enter a checkmark next to the user’s name.

## Role configuration step-by-step

Role define user’s permissions within a box.

### Check roles

Use the following steps to view box roles in BigPicture:

1. Open the Module Switcher and click **Configuration **(you can also right-click the box’s row in the box tree).
2. In the left-hand panel, click **Security** > **Security**.
3. The Security page displays four available roles, defined below.
  1. **box Admin**: Administrators should assign this role to users or groups requiring full access to a box, including the ability to assign roles.
  2. **box Editor** - box editors have access to *all* modules within a box (Gantt, Scope, Board, etc.). However, they can’t update the box configuration or create and delete boxes.
  3. **box Viewer** - box viewers have read-only access to boxes. They can’t make changes to tasks, including moving them in the Gantt module.
  4. **Sub-box Creator** - Sub-box creators have access to create child boxes in the box they have access to. An example use of a sub-box creator is granting the role to a Project Manager who requires access to the box that defines their project. However, that same Project Manager should not have access to projects outside their responsibility in the organization.
4. The number next to each role indicates the number of users assigned to the role.

### Assign a role to a user or group

Now that you understand the four box roles available in BigPicture, the following video describes the process of assigning a role to a user or group:

Or, follow these steps: 

1. Open the Module Switcher and click **Configuration**.
2. In the left-hand pane, click **Security** > **Security**.
3. Expand the role you plan to assign, for example, **box Admin**.
4. Listings display for **Users** and **Groups**.
5. Expand the appropriate option. In this example, **Users**. Existing users display:
6. To add the role to a user, locate them in the list. Alternatively, begin typing the user’s name, and the list filters automatically. Enter a check mark next to the user’s name.
7. The list now includes the new user.

## Explore other use cases

- [Global roles in BigPicture](https://appfire.atlassian.net/wiki/spaces/~anna.cieplota/pages/1957101569)

## Prerequisites

To complete the steps in this article, users must be assigned Admin access in BigPicture.

## Troubleshooting

- [I don’t see any data in BigPicture.](https://appfire.atlassian.net/wiki/spaces/SPM/pages/2399077191)
- [I opened BigPicture and didn’t see any boxes.](https://appfire.atlassian.net/wiki/spaces/SPMDRAFT/pages/1961164869)

## Learn more

- [https://appfire.atlassian.net/wiki/spaces/SPM/pages/1918667044](https://appfire.atlassian.net/wiki/spaces/SPM/pages/1918667044)
- [https://appfire.atlassian.net/wiki/spaces/SPM/pages/1918668158](https://appfire.atlassian.net/wiki/spaces/SPM/pages/1918668158)
- [https://appfire.atlassian.net/wiki/spaces/SPM/pages/1918404963](https://appfire.atlassian.net/wiki/spaces/SPM/pages/1918404963)
- [https://appfire.atlassian.net/wiki/spaces/SPM/pages/1918535907](https://appfire.atlassian.net/wiki/spaces/SPM/pages/1918535907)
- [https://appfire.atlassian.net/wiki/spaces/SPM/pages/1918667414](https://appfire.atlassian.net/wiki/spaces/SPM/pages/1918667414)
- [https://appfire.atlassian.net/wiki/spaces/SPM/pages/1918700886](https://appfire.atlassian.net/wiki/spaces/SPM/pages/1918700886)