Access to a Lytics project is governed by two layers working together: your Contentstack organization membership, and the role you hold on a specific project. This page describes both layers, how they combine, and what each level of access allows.
Every Lytics project belongs to one Contentstack organization. A user's relationship to that organization determines their baseline access to all Lytics projects within it.
| Organization status | What it grants |
|---|---|
| Organization Owner | Full access to every Lytics project in the organization. Implicitly administers every project, regardless of any project-level role assignment. |
| Organization Admin | Same as the owner – full access to every Lytics project in the organization. |
| Organization Member (no admin role) | No access to Lytics projects by default. Must be explicitly invited as a collaborator on each project they need to use. |
Note: Organization-level access is inherited, not configured in the Lytics CDP. Manage it from your Contentstack organization settings.
Beyond organization-level access, individual users are added to specific projects as collaborators and assigned a role. Roles are per-project, a user can be an Admin on one project and an Observer on another.
Important points to know:
The Lytics CDP evaluates access in a fixed order of precedence. The first condition that matches determines whether the action is allowed or denied.
| Priority | Condition | Result |
|---|---|---|
| 1 | User is an Organization Owner or Admin | Access allowed |
| 2 | User is the Project Owner | Access allowed |
| 3 | User holds a project role that covers the action | Access allowed |
| 4 | None of the above conditions are met | Access denied |
The practical effect of this order is as follows:
The following table shows what each access level can do across common Lytics CDP actions.
| Action | Org Owner / Admin | Project Owner | Invited Collaborator |
|---|---|---|---|
| View project list | ✅ | ✅ (own projects) | ✅ (projects they're on) |
| Create a new project | ✅ | - | ❌ |
| View project dashboard | ✅ | ✅ | ✅ |
| Edit project name, description, domain | ✅ | ✅ | Depends on role |
| Add or remove a connection (CMS stack, Launch, Personalize) | ✅ | ✅ | Depends on role |
| Invite collaborators | ✅ | ✅ | Depends on role |
| Change a collaborator's role | ✅ | ✅ | Depends on role |
| Remove a collaborator | ✅ | ✅ | Depends on role |
| Delete the project | ✅ | ✅ | ❌ |
| Open the Lytics platform | ✅ | ✅ | ✅ |
| Access Contentstack organization settings | Depends on org role | ❌ | ❌ |
Note: