For the complete documentation index, see llms.txt. This page is also available as Markdown.

Roles & permissions

Manage user roles and permissions with your agentic CX deisgner account and workspaces

Roles & Permissions

Access in agentic CX designer is managed through Amazon Connect Customer and controlled at the workspace level.

This means users do not create standalone agentic CX designer accounts manually. Instead, Account Administrators select from the user profiles already available in the connected Amazon Connect Customer instance, add those users to the appropriate agentic CX designer workspace, and assign each user a workspace role.

Workspace roles determine what a person can view, create, edit, or manage inside that workspace.


How access works

Agentic CX designer uses a workspace-based access model.

Access level
What it controls

Amazon Connect Customer access

Determines whether a user can access Amazon Connect Customer and, depending on their permissions, launch or administer agentic CX designer.

Agentic CX designer workspace access

Determines which workspace or workspaces a user can open.

Workspace role

Determines what the user can do inside a specific workspace.

A user may have access to one workspace, multiple workspaces, or no workspaces, depending on how an Account Administrator has configured their access.

Resources and permissions are not shared automatically across workspaces. This means:

  • Applications in one workspace do not appear in another workspace.

  • Flows and resources are managed independently by workspace.

  • User roles are assigned per workspace.

  • Access to one workspace does not automatically grant access to others.

If you are an Account Administrator or have been assigned a role in more than one workspace, you can switch between workspaces from the workspace dropdown in the upper-left corner of agentic CX designer.


Account Administrators

Account Administrators manage workspace setup and user access for agentic CX designer.

Account Administrators can:

  • Launch agentic CX designer from the Amazon Connect Customer console

  • Access the Admin Hub

  • Create workspaces

  • Select users from available Connect user profiles

  • Add users to one or more workspaces

  • Assign workspace roles & create custom roles

  • Manage workspace access over time

Users are selected from the profiles already available in the connected Amazon Connect Customer instance.


Workspace users

Workspace users are people who have been added to one or more agentic CX designer workspaces by an Account Administrator.

Workspace users can access the workspace or workspaces assigned to them. What they can do inside each workspace depends on their assigned role.

For example, one user may have edit access in a development workspace but read-only access in another workspace used for production review.


Adding users to a workspace

To give a user access to agentic CX designer:

  1. Open Agentic CX designer from Amazon Connect Customer.

  2. Go to the Admin Hub.

  3. Select Users.

  4. Add users from the available Connect user profiles.

  5. Assign each user a workspace role.

  6. Save the changes.

Only users with the appropriate account-level permissions can manage workspace access.


Roles and permissions

Roles determine what users can do inside a workspace.

Role type
Typical access

Account Administrator

Manages account-level setup, workspaces, user access, and role assignments through the Admin Hub.

Workspace Administrator

Manages resources inside an assigned workspace, depending on the permissions granted.

Builder

Creates and edits conversational AI resources such as applications, flows, prompts, slots, and knowledge bases.

Developer

Configures technical resources such as integrations, Data requests, APIs, secrets, and environment-specific settings.

Analyst

Reviews analytics, conversation history, dashboards, evaluations, and performance data.

Read-only

Views workspace resources without making changes.

Last updated