Last Updated on : 2022-09-07 06:41:37download
This topic describes how to implement and manage authorization in an organization space.
By setting a role for a specified account, you grant permissions to the account, such as viewing and editing the menu, PID, and app in your space. Multiple accounts can manage the data under their own accounts together to implement sub-account management function.
For easy usage, Tuya presets several common roles for different scenes, such as the developer, administrator, data operator, and customer service.
A brand owner must go through the following process to create a product.
With the authorization function, the brand owner can authorize specified accounts within the permission range. The process is as follows.
On the page of Authorizations, you can add authorization and view your authorized spaces. The authorized accounts can be divided into organization accounts and individual accounts.
Grant the data viewing and operating permissions of this account to another account.
Log in to the Tuya IoT Platform.
In the top right corner of the page, enter My Space > Authorization > Join My Space > Add Authorization.
In the pop-up Add Authorization window, enter the user account and click Set Permissions.
Note: The authorized account must have registered on the Tuya IoT Platform.
The page jumps to Permissions page.
Tuya provides eight preset roles. If the preset roles cannot meet your requirements, you can also customize the roles. Permission setting consists of the following three aspects:
Note: You cannot modify the menu permissions of preset roles. But you can edit the custom roles.
Set roles for specified accounts
Set permissions for custom roles
On the page of Permissions, click + Custom Role in Select Role Type.
On the Custom Role page, enter the name of the custom role, and select the permissions and subsidiary permissions in each menu and sub-menu.
- With subsidiary permissions, you can use some functions independently in the menu. You cannot use some functions independently beyond the subsidiary permissions range.
- According to the selected menu permissions, the system will generate data permissions.
- If an authorized account wants to process data of a PID or app, it must have menu permissions and data management permissions.
In Data Permissions, select View Authorization or Permission of Management.
Select products, applications, and ticket permissions.
Note: If you select All Products, All Applications, or All Tickets, you do not only grant the authorized account the permissions of existing products, applications, and tickets, but also all products and applications to be created in the future, and tickets permissions that may be added in the future.
The authorized account can go to My Space > Authorization > Join My Space > View My Authorized Space to check the authorized spaces. The space name is the authorizer’s organization name.
You can request specfic role permissions in a space of another account. Specified roles are limited to Tuya’s eight predefined roles.
Note: The other party’s account can be an email address or phone number. But currently, the Platform only supports a phone number in mainland China. This type of phone number begins with the country code +86.
After the other party approves your request, you will join the space with the specified role. You can only view and edit the products and applications that you have created.
On the homepage, in the top-right corner, click My Space > Authorizations > Join My Space. In the list, select an account and click Delete in the Operation column. Once the authorized account is deleted, the data generated by the products and applications under the account will also be deleted.
The space is the console for processing the authorized data. One space corresponds to one authorizer account.
When an authorizer account is authorized to another account, a space of the authorizer account is generated in the authorized account. The authorized account can only view and manage data within the permission range.
For example, if account A is authorized to account B and account C, both account B and C will have a space of account A. If both account A and account B are authorized to account C, account C will have spaces of both account A and account B.
When an authorized partner wants to check or process the authorized data, the data needs a container to be presented in. From the perspective of data isolation and vision interaction, it is appropriate to use a space.
Log in to the Tuya IoT Platform, click My Space > More Space in the top right corner to view and switch the space, including a default space and authorized spaces. Besides, you can also click More Space to check detailed space information.
Log in to the Tuya IoT Platform, and go to My Space > Authorization > Join My Space > View My Authorized Space. You can view the space and switch to another space.
What is fixing on the top bar?
Log in to the Tuya IoT Platform, and click My Space > More Space. You can see the space that you have fixed on the top bar.
With this function, you can select the space that you want to display.
Do I have spaces if I am not authorized?
Only default space, namely My Space.
Can one account have multiple spaces?
Yes. You can have your own default space and authorized spaces. The default space is My Space, while other spaces are authorized by the authorizer account. The authorized space name is the authorizer’s organization name.
Which accounts can authorize and be authorized?
All the accounts registered on the Tuya IoT Platform.
What data in my account can be authorized to a partner?
All the products and apps that you can see in the account space can be authorized. However, you cannot authorize the data in the authorized space to another account.
Is this page helpful?YesFeedback
Is this page helpful?YesFeedback