Human Intelligence is designed for governed access to sensitive people data. Security controls make sure the right people can reach the product, and access controls make sure those people only see the data they’re supposed to.
Authentication
Human Intelligence sign-in is passwordless. By default, entering your email sends you a one-time verification code that logs you in — no passwords to manage, reset, or forget.
Organizations can also connect their identity provider so everyone signs in with their corporate credentials and users are provisioned automatically. See the SSO & Directory Sync setup guide.
Role-Based Access
System roles control what a user can do inside Human Intelligence. There are three:
System roles are about features. They determine which buttons you see and which pages you can open — not which data appears on those pages.
Data Access
Data visibility is governed by data roles — customer-defined roles your Data Admins create. A data role gets its access from rules, each pairing a set of data categories (compensation, demographics, PII, …) with org boundaries (the whole org, a named subtree like a department or location, or a population relative to the viewer, like their own reporting line).
This separation means you can give someone full feature access to Human Intelligence while still restricting which data — and whose rows — they can view. Product access and data visibility are independent controls. See Access Control for the full model.
A user can have access to HI but not to compensation metrics.