What she is allowed to do
Access is granted by you,
and scoped like a hire's.
Of the 16 connections above, 10 are read and write and 6 are read only. That column is set before she starts, it is visible to your team the whole time, and you can change it or end it without a conversation with us.
Per serviceThe access column is the whole answer
Where a row says read and write, she does the job in the system itself — the order updated, the campaign changed, the entry categorized. Where it says read only, she can look and report, and the account is exactly as she found it.
Per personSet in your admin, like any employee
Her account is created and scoped by you, in the same console you use for a new hire. It appears in your audit log, and it can be pulled back in a click without touching anyone else's access.
Before it leavesAnything outward-facing waits for a yes
An email to a customer, a post, a purchase order: drafted with the reasoning attached, brought back to you, and sent once you approve it.
Most tools already offer an API or an MCP surface, and permissions are set at the user level, so her access is scoped, auditable and revocable the same way any employee's is.