In 340B ESP, roles define the level of access assigned to each user. Permissions determine the specific actions they can take and the data they can view. Use roles and permissions to provision access efficiently and maintain consistent access control across your covered entities.
What are Roles?
Roles group a set of permissions into predefined access levels. Assigning a role to a contributor establishes their baseline visibility and capabilities within 340B ESP. Roles help you enforce access control and maintain organized user management.
What are Permissions?
Permissions are the individual access rights that determine what a contributor can do, such as inviting new users, managing user roles, and inviting partners to covered entities. Permissions are granted through roles and cannot be assigned independently.
Permissions by Role
Contributors can be assigned one of two predefined roles: Admin or User. Each role includes a distinct set of permissions that determine what users can see and do within a covered entity.
Admin – Provides full access to manage and invite users to registered covered entities. Admins can view all data, invite partners, and perform all actions available to Users.
User – Grants standard access needed for day-to-day activities, such as viewing data, submitting data, and navigating between multiple covered entities, to which they have been invited.
340B ESP Role Permissions
| Admin | User |
Access multiple entities | x | x |
Submit claims data | x | x |
Make contract pharmacy designations | x | x |
Invite Users | x |
|
Invite Admins | x |
|
Invite Parters (TPAs) | x |
|
Edit user roles | x |
|
Admin Assignment
In addition to being assigned Admin access by an existing Admin, Admin roles are automatically assigned to users who register a new covered entity — for that entity only.
This ensures that all registered representatives have full administrative control to configure user access, manage partners, and oversee entity-wide operations from the start.
Where Can I View User Roles?
User roles can vary by entity. This means that you may be a user in one entity, but an Admin on another. This is viewable directly under the Users tab within the Entity Profile. This table displays a complete list of all contributors associated with the covered entity, their activation status, and their role.
From here, Admins can review access levels, confirm who has administrative permissions, and manage changes as needed.
Tip: Want to invite new users to your covered entity? Check out the How to Add a User to Your Covered Entity and How to Manage User Permission for a Covered Entity.
