Enterprise 11: System created roles

When planning your Automation Anywhere deployment, consider the licensing, roles, and users required to perform the Automation Anywhere functions. This topic describes the default roles and their associated permissions.

Access to Automation Anywhere functions is defined by a combination of licensing applied to the Control Room and the roles assigned to the user.

System created roles are pre-configured during Control Room installation. These roles cannot be deleted or edited. You can only assign or unassign these roles to users.

Default Roles Description
AAE_Admin

(ID: 1)

Permits access to all features, including creating other Admin users and access to all folders and files. The only role that can access Control Room settings.
AAE_Basic

(ID: 2)

Permits users to upload and download Task Bots in the My Tasks folder. Limited access to other features.
AAE_Bot Insight Admin

(ID: 3)

Permits users to view and manage data in Bot Insight. Limited access to Control Room features. (If Bot Insight license is installed).

It allows a user to access Bot Insight RESTful APIs to get access to the data logged by the Control Room, and by a task during 'Production' run.

AAE_Bot Insight Consumer

(ID: 5)

Permits users to view data in Bot Insight and limited access to Control Room features. (If Bot Insight license is installed)
AAE_Bot Insight Expert

(ID: 6)

Permits users to manage data in Bot Insight and limited access to Control Room features. (If Bot Insight license is installed)
AAE_Bot Store Consumer

(ID: 15)

Permits users to download a bot package or a Digital Worker from the Bot Store to the Control Room repository.
AAE_BotFarm Admin

(ID: 8)

Permits users access to BotFarm admin privileges.
AAE_BotFarm Agent

(ID: 7)

Permits users to view and manage privileges to the user.
AAE_COE Admin

(ID: 16)

Permits users to view and manage Operational and Business Analytics dashboards and data.
AAE_IQ Bot Admin

(ID: 14)

Permits users to access the IQ Bot admin privileges.
AAE_IQ Bot Services

(ID: 9)

Permits users to access the IQ Bot console and limited access to Control Room features.
AAE_IQ Bot Validator

(ID: 4)

Permits users to access the IQ Bot Validator screen and limited access to Control Room features. (For a Bot Runner with an IQ Bot license)
AAE_Locker Admin

(ID: 3)

Permits users to view all credentials and all lockers. A Locker Admin can change the owner of a credential that they do not own. For lockers they do not own, they can delete the locker, edit permissions, and remove credentials.

Note: This permission is not applicable to Control Room Admin role.
AAE_MetaBot Designer

(ID: 13)

Permits users to access Bot Creator MetaBot Designer from Enterprise Client but does not allow the user to see any bots or supporting files.

Note: Migrated users (Bot Creator) who had access to MetaBot Designer in Control Room 11.1 and less shall continue to have access to Designer.
AAE_Pool Admin

(ID: 11)

Permits users to view and manage all device pools.

Note: Users with AAE_Pool Admin do not have permission to see any bots and supporting files.
AAE_Queue Admin

(ID: 10)

Permits users to view and manage all queues.

Bot Insight, BotFarm, and IQ Bot roles are displayed only if you have respective licenses. Bot Insight, BotFarm, and IQ Bot roles are displayed only if you have respective licenses.