Overview
Akhara uses Role-Based Access Control (RBAC) to manage permissions across your organization. Roles define what actions users can perform, while assignments determine which resources they can access.Akhara’s RBAC is designed for healthcare workflows. Clinical reviewers have different permissions than engineers, and PHI access is strictly controlled and audited.
Built-in Roles
Akhara provides predefined roles optimized for healthcare AI evaluation workflows:Organization Roles
Project Roles
Clinical Reviewer Roles
For human-in-the-loop review, Akhara enforces credential-based access:Clinical reviewer roles require credential verification before activation. Akhara validates medical licenses against state board databases.
Permission Matrix
Dataset Permissions
Evaluation Permissions
Review Permissions
*Reviewers can only override within their credentialed scope
PHI Access
*Requires explicit PHI access grant and is fully audited
Managing Roles
Assign a Role via SDK
Assign a Role via Dashboard
1
Navigate to Settings
Go to Organization Settings → Members
2
Invite or Select User
Click Invite Member or select an existing user
3
Assign Roles
Select organization role and project-specific roles
4
Configure PHI Access
If needed, enable PHI access (requires justification)
Custom Roles
Enterprise plans can define custom roles with granular permissions:Best Practices
Principle of Least Privilege
Grant only the minimum permissions needed for each role
Separate Clinical Access
Use credential-verified roles for any clinical decision review
Regular Audits
Review role assignments quarterly and after personnel changes
PHI Minimization
Limit PHI access to roles that absolutely require it
Related
Audit Logs
Track all permission changes and access events
Org & Project Permissions
Configure organization and project-level access