UI Guide

Roles cheat-sheet

A quick summary of what each built-in role can do, so you know what to expect (or request) as a user:

RoleWhat it can do
AdminEverything — every resource, every action, including user/role management.
OpOperational work: trigger DAGs, clear/mark task state, view everything. Cannot manage users/roles or edit DAG/connection definitions.
EditorEdit DAGs, connections, and variables. No admin access (can't manage users or roles).
ViewerRead-only access everywhere. Can look but not touch.
PublicUnauthenticated, read-only — the minimal baseline access.

If a button or tab you expect to see is missing, it's almost always because your role doesn't grant that permission — ask your Maestro-π Admin rather than assuming something's broken.