Permission Set Assignment
AdminSphere gives people access to its records through permission sets, one per role. This step gives each person the permission set for their role, so they see the AdminSphere objects and fields their work needs.
Before you start
Section titled “Before you start”- You need the System Administrator profile.
- Know which role each person has: administration, compliance, operations or sales.
The permission sets
Section titled “The permission sets”AdminSphere installs these permission sets. Each one’s description in Setup says what it covers.
| Permission set | What it gives access to |
|---|---|
| AdminSphere Admin | All AdminSphere objects, including configuration. Compliance Log records can be created and read, but not changed. |
| AdminSphere Compliance User | Risk Assessments, Screenings, KYC, Compliance Log and Regulatory Filings. Read access to Entities and the risk engine configuration. |
| AdminSphere Operations User | Entities, Service Engagements, Tasks, KYC, Onboarding, Offboarding, Archives, Financial Accounts, Transaction Profiles and Form Requests. |
| AdminSphere Sales User | The AdminSphere fields on Leads, Opportunities and Accounts. Read access to Entities, Service Templates, Engagements and Onboarding. |
| AdminSphere MCP User | Only for an AI client connected through the AdminSphere MCP Server. See Connecting an AI client. |
-
Go to Setup → Users → Permission Sets.
-
Click the permission set for the role, for example AdminSphere Sales User.
-
Click Manage Assignments, then Add Assignment.

-
Under Select a List View, pick a view that lists the people you want, for example Recently Viewed, and select them. Click Next.
-
Under Select an Expiration Option For Assigned Users, leave No expiration date, or choose Specify the expiration date if this access should end on a date.
-
Click Assign. The Assignment Summary shows Success for each person. Click Done.
-
Repeat for each role.
You can also assign from the person’s side: Setup → Users → Users, click the name, and in Permission Set Assignments click Edit Assignments.
Connecting an AI client
Section titled “Connecting an AI client”If you connect an AI client through the AdminSphere MCP Server, give its integration user two permission sets: a role permission set, and AdminSphere MCP User. The AI client then sees exactly what that role sees. Assign both with the steps above.
How to check it worked
Section titled “How to check it worked”Go to Setup → Users → Users and click the person’s name. Their Permission Set Assignments list shows each AdminSphere permission set, with its Date Assigned and, if you set one, Expires On.
If something goes wrong
Section titled “If something goes wrong”- The Add Assignment page says the list view was deleted, or that you don’t have permission to view it. No list view is chosen yet. Click Select a List View and pick one.
- The person you want isn’t in the list. Pick a different list view, or search the list.