Before we get around to sorting out a proper fine-grained permissions model, we should update the manager role to allow read-only access to all deployment data, as well as write access for starting materials and equipment by default. This would allow groups that want to operate openly internally to promote everyone to managers without needing to give everyone admin access. In the future this would become a configurable default permissions policy global to the deployment instead.
Before we get around to sorting out a proper fine-grained permissions model, we should update the
manager
role to allow read-only access to all deployment data, as well as write access for starting materials and equipment by default. This would allow groups that want to operate openly internally to promote everyone to managers without needing to give everyone admin access. In the future this would become a configurable default permissions policy global to the deployment instead.