Core Panel
Documentation Account roles and permissions
v0.5.191 Updated September 20, 2026
1. Account roles and permissions

Chapter 1 • Guide 2 of 31

Account roles and permissions

Administrator

Administrators can manage the complete server and every website. They can create and delete websites, manage users, install server capabilities, configure email and DNS, change firewall rules, open the root terminal, view the audit log, and assign operator access.

Core Panel prevents an administrator from deleting their own signed-in account and prevents deletion or demotion of the last administrator.

Operator

Operators can manage only the websites assigned to them. For each website, an administrator controls which management sections the operator can see and use. Operators cannot manage panel users or server-wide settings.

An operator may be granted reseller permissions. A reseller can create websites, delete assigned websites when permitted, and apply a predefined access-and-limits package to new websites. Administrators can cap the reseller's total website count.

Site account

A site account is linked to one website. Its panel password is also used for password-based SFTP or SSH access when those login methods are enabled. Site accounts see only their own website and the features made available to them.

Suspended accounts

When an administrator suspends an operator, Core Panel ends that user's active panel sessions. Assigned domains display a branded suspension response until the account is restored.

Continue this workflow