Super Admin

Google Workspace · Identity · Super Admin

Super Admin

Privilegiada
Super AdminIAM ScopeIdentity

Dado verificado em · Fonte

Admin Tier
SA
Categoria
Identity
Privilégios
13
Slug / ID
super-admin
Categoria
Identity
Admin Tier: Super Admin

Full organizational control. Can manage all users, settings, services and billing. Equivalent to a Global Administrator — highest risk role.

Descrição

Has access to all features in the Google Admin console and Admin API and can manage every aspect of your organization's account. Super admins also have full access to all users' calendars and event details.

Privilégios (13)

Create and assign administrator roles
Manage other admins, including changing passwords
Transfer ownership of files during the user deletion process
Accept the Terms of Service for a product
Invite unmanaged user accounts to become Google Workspace managed user accounts
Restore deleted users
Turn Multi-party approval settings on or off
Allow users to turn on 2-Step Verification
Install Google Workspace Marketplace apps
Manage Google Calendar resource access-level controls
Use the data migration service
Grant domain-wide delegation and manage API client access
Set up Google as a SAML identity provider and add or modify SAML apps

API Privileges(3)

Lista parcial: a documentação do Google mostra esta role truncada. Há mais privilégios além dos exibidos.

API PrivilegeÁreaOperação
SUPER_ADMINSUPERADMIN
ROOT_APP_ADMINROOTAPP ADMIN
ADMIN_APIS_ALLADMINAPIS ALL
Por página
1–3 de 3 privilégios

Role Definition (JSON)

{
  "roleId": "super-admin",
  "roleName": "Super Admin",
  "roleDescription": "Has access to all features in the Google Admin console and Admin API and can manage every aspect of your organization's account. Super admins also have full access to all users' calendars and event details.",
  "rolePrivileges": [
    {
      "privilegeName": "SUPER_ADMIN",
      "serviceId": "admin.googleapis.com"
    },
    {
      "privilegeName": "ROOT_APP_ADMIN",
      "serviceId": "admin.googleapis.com"
Ver documentação oficial no Google Workspace Admin SDK