Published at: 2026-09-17
Partner connect roles, permissions, and data scope
Roles
| Role | Purpose |
|---|---|
| Channel Manager | Manages partners for the upstream enterprise and has full access to the Partner object by default. |
| Partner User | Default external role used by downstream users in Partner Connect. |
| Custom external role | Created by the upstream enterprise when the default Partner User role does not meet the business requirement. |
Permission layers
- Application external access scope.
- External role assignment.
- Object operation permissions.
- Field permissions.
- Record types and layouts.
- Record data scope.
- Data sharing between roles.
Data scope
The Partner Connect source documentation lists five object data scopes:
| Data scope | Access |
|---|---|
| Private | Access only the user’s own data. |
| Company Read Only | Users in the same company can view the data. |
| Company Read/Write | Users in the same company can view and edit the data. |
| Public Read Only | Users within the access scope can view the data. |
| Public Read/Write | Users within the access scope can view and edit the data. |
Configuration check
A partner user without an external role cannot use Partner Connect correctly. After configuration, test object, field, and record access with different partner companies and roles.