The Penneo Super API user is a specialized user role with both limited and expanded rights designed to provide account-wide control for integrations, specifically regarding access to signed documents. This role is created to give organizations more control over specific aspects of a Penneo integration.
Account-wide data access for Super API users
Unlike regular users who can only see documents they created or had shared with them, a Super API user has account-wide data access.
- Complete Visibility: It can access all casefiles and documents across your entire Penneo account.
- Built for Integrations: It provides a comprehensive, holistic view of all your organization's documents, making it the perfect fit for automated, system-wide integrations.
Limitations and restrictions of the Super API role
To ensure system security and integrity, the Super API user has a very specific set of rules. Here is what it can and cannot do:
| What it CAN do: | What it CANNOT do: |
|---|---|
| Account-wide access: View and retrieve all casefiles and documents. | No Web App access: Cannot log in to the Penneo web interface or archive. |
| API-only access: Connect exclusively through the Penneo API. | No sending: Cannot create or send casefiles for signature. |
| Permanent role: Once created, it cannot be converted into a regular user or administrator. |
Creating a Penneo Super API user
Follow these steps to create a Super API user within the Penneo company configuration:
- Navigate to the user overview under company configuration.
- Click 'Create a new user'.
- Provide a name and email address for the user.
- Select 'Super API user' for the role. Note that API Keys are automatically enforced as the only available login method.
- Click 'Create user'. Note that an invitation email is not sent for this user role.
- Copy the API key and secret immediately, as they will not be displayed again.
It is critical to copy the credentials during the final step of the creation process. You will not receive an email invitation containing these credentials, and they cannot be retrieved after the window is closed.
Resetting Penneo API credentials
If API keys are lost or need to be replaced, administrators can reset the credentials for a Penneo Super API user. Be aware that any integration using the old keys will stop working immediately upon the credential reset.
- Navigate to the user overview and find the Super API user in the user list.
- Select the option to edit the user.
- Choose to reset the credentials.
- New API keys will be generated and displayed once. You must copy and save these keys immediately, as they will not be accessible once the window is closed.
Deleting a Super API user
Penneo administrators can delete a Super API user in the same manner as other user types. Detailed instructions for this process can be found in this guide: User Administration in Penneo
Deleting the user immediately deactivates the associated API key and secret. Any integration relying on these credentials will cease to function right away.