Permission Levels: Editorial and Advanced Response

The content on this page was translated automatically.

Access permissions always involve issues of security and legal requirements, because they determine who is allowed to do what in the system. Training reduces risks associated with operational errors, knowledge gaps, and behavior that compromises security.


Permission Level 1: Standard Editor (Low Risk)

This level includes individuals who are permitted to edit only individual pieces of content on existing pages. They work exclusively within predefined structures and have no influence over navigation or site architecture. This group is responsible for maintaining content within a predefined framework, without making changes to technical or structural elements.

Permitted Actions:

  • Edit and update text
  • Replace or add images
  • Upload and link files
  • Reorganize content within an existing page
  • Maintain metadata for individual pieces of content
  • Post announcements and schedule events

Prohibited actions:

  • Do not create, delete, or move pages
  • No changes to navigation structures
  • Do not use plugins

Risk Profile:
This level involves low risk, as errors are limited to individual pieces of content and have no impact on security or structure. Liability risks are minimal, provided that basic standards (e.g., accessibility, copyright) are adhered to.


Authorization Level 2: Advanced Editorial (medium risk)

This level includes individuals who, in addition to content editing, are also responsible for maintaining and further developing individual, medium-sized web sections up to the size of a department or comparable unit . They work in depth on page structures, navigation, page properties, and advanced editorial elements. Edits are made exclusively within the assigned area. The job profile requires a higher level of technical understanding as well as an awareness of the impact on user guidance, accessibility, and discoverability, as well as risks related to data loss.

Permitted Actions

  • Create new pages within your own structure
  • Move, copy, hide, or delete pages
  • Edit page properties (title, visibility, settings)
  • Working with the News plugin
  • Retrieving form data
  • Translations

Prohibited actions

  • No impact on overall architecture
  • No use of the People plugin
  • No creation of forms
  • No interference with automatic translations


Risk Profile This level involves moderate risk, as structural changes can have a direct impact on user navigation, content consistency, and the visibility of the website. Errors can affect entire page branches but are limited to the respective area of responsibility. Care, a thorough understanding of the system, and strict adherence to established standards are therefore absolutely essential.