Published at: 2026-09-17

Partner connect roles, permissions, and data scope


Roles

Role Purpose
Channel Manager Manages partners for the upstream enterprise and has full access to the Partner object by default.
Partner User Default external role used by downstream users in Partner Connect.
Custom external role Created by the upstream enterprise when the default Partner User role does not meet the business requirement.

Permission layers

  1. Application external access scope.
  2. External role assignment.
  3. Object operation permissions.
  4. Field permissions.
  5. Record types and layouts.
  6. Record data scope.
  7. Data sharing between roles.

Data scope

The Partner Connect source documentation lists five object data scopes:
Data scope Access
Private Access only the user’s own data.
Company Read Only Users in the same company can view the data.
Company Read/Write Users in the same company can view and edit the data.
Public Read Only Users within the access scope can view the data.
Public Read/Write Users within the access scope can view and edit the data.

Configuration check

A partner user without an external role cannot use Partner Connect correctly. After configuration, test object, field, and record access with different partner companies and roles.
Submit Feedback