Keeping app costs current is finance work, but until now it took an admin account that could also add users, rewrite groups, and reconfigure single sign-on. That’s a lot of access to hand out so somebody can update a renewal date.

The new Finance admin role closes that gap. It can edit everything on the subscription side of an app β€” cost, contract terms, billing frequency, renewal dates, platform fees, budget owner, notes β€” and read the rest of your organization. It can’t create, delete, or reconfigure apps, and it can’t reach Manage Users or Manage Groups at all.

How It Works

  • Subscription fields are editable, everything else is read-only. Open any app and the Subscription tab is live. The rest of the configuration is visible but locked.
  • Users and Groups disappear from the navigation, and typing those URLs directly lands back on the dashboard.
  • No SSO, no assignments, no sync. Creating apps, deleting them, changing SSO, editing user and group assignments, and directory sync all stay out of reach.
  • The Cost Dashboard works the way finance expects. The prompt on apps missing cost information shows up for Finance admins and drops them straight onto the editable Subscription tab, which is the whole point.
  • Full admins lose nothing. Anyone with complete app permissions still edits subscriptions exactly as before.

Getting Started

  1. Go to Settings->User roles and find or add the user.
  2. Assign them the Finance admin role.
  3. Point them at the Cost Dashboard. Every app missing cost information is one click from editable.