Admin Tier
SACategoria
IdentityPrivilégios
13Slug / ID
super-adminCategoria
IdentityAdmin Tier: Super Admin
Full organizational control. Can manage all users, settings, services and billing. Equivalent to a Global Administrator — highest risk role.
Descrição
Has access to all features in the Google Admin console and Admin API and can manage every aspect of your organization's account. Super admins also have full access to all users' calendars and event details.
Privilégios (13)
Create and assign administrator roles
Manage other admins, including changing passwords
Transfer ownership of files during the user deletion process
Accept the Terms of Service for a product
Invite unmanaged user accounts to become Google Workspace managed user accounts
Restore deleted users
Turn Multi-party approval settings on or off
Allow users to turn on 2-Step Verification
Install Google Workspace Marketplace apps
Manage Google Calendar resource access-level controls
Use the data migration service
Grant domain-wide delegation and manage API client access
Set up Google as a SAML identity provider and add or modify SAML apps
API Privileges(3)
Lista parcial: a documentação do Google mostra esta role truncada. Há mais privilégios além dos exibidos.
| API Privilege | Área | Operação | |
|---|---|---|---|
| SUPER_ADMIN | SUPER | ADMIN | |
| ROOT_APP_ADMIN | ROOT | APP ADMIN | |
| ADMIN_APIS_ALL | ADMIN | APIS ALL |
Por página
1–3 de 3 privilégiosRole Definition (JSON)
{
"roleId": "super-admin",
"roleName": "Super Admin",
"roleDescription": "Has access to all features in the Google Admin console and Admin API and can manage every aspect of your organization's account. Super admins also have full access to all users' calendars and event details.",
"rolePrivileges": [
{
"privilegeName": "SUPER_ADMIN",
"serviceId": "admin.googleapis.com"
},
{
"privilegeName": "ROOT_APP_ADMIN",
"serviceId": "admin.googleapis.com"