Skip to main content

Overview

Akhara uses Role-Based Access Control (RBAC) to manage permissions across your organization. Roles define what actions users can perform, while assignments determine which resources they can access.
Akhara’s RBAC is designed for healthcare workflows. Clinical reviewers have different permissions than engineers, and PHI access is strictly controlled and audited.

Built-in Roles

Akhara provides predefined roles optimized for healthcare AI evaluation workflows:

Organization Roles

Project Roles

Clinical Reviewer Roles

For human-in-the-loop review, Akhara enforces credential-based access:
Clinical reviewer roles require credential verification before activation. Akhara validates medical licenses against state board databases.

Permission Matrix

Dataset Permissions

Evaluation Permissions

Review Permissions

*Reviewers can only override within their credentialed scope

PHI Access

*Requires explicit PHI access grant and is fully audited

Managing Roles

Assign a Role via SDK

Assign a Role via Dashboard

1

Navigate to Settings

Go to Organization SettingsMembers
2

Invite or Select User

Click Invite Member or select an existing user
3

Assign Roles

Select organization role and project-specific roles
4

Configure PHI Access

If needed, enable PHI access (requires justification)

Custom Roles

Enterprise plans can define custom roles with granular permissions:

Best Practices

Principle of Least Privilege

Grant only the minimum permissions needed for each role

Separate Clinical Access

Use credential-verified roles for any clinical decision review

Regular Audits

Review role assignments quarterly and after personnel changes

PHI Minimization

Limit PHI access to roles that absolutely require it

Audit Logs

Track all permission changes and access events

Org & Project Permissions

Configure organization and project-level access