ユーザーのステータス、ロール、権限を理解する

:bookmark: これは、Discourse におけるさまざまなユーザーのステータス、ロール、権限を理解するためのガイドです。これらがユーザーの機能にどのように影響し、データベースにどのように保存されるかについても説明します。

:person_raising_hand: 必要なユーザーレベル: 管理者

Discourse には、多くの組み込みのユーザーステータス、ロール、権限があります。

これらのステータスとロールは、管理ダッシュボードのユーザーセクションから特定ユーザーのプロフィールを表示したときに確認できます:

権限ステータス

有効化 (Activated)

メールが確認済みであり、したがって Discourse インスタンスで有効なアカウントです。

  • アカウントは Discourse にログインできます。無効なアカウントはログインできません。
  • 無効なアカウントは、メールの確認(および登録を完了するために必要な他のルート)のみを行うことができます。

保存先: users テーブルの active ブール列

段階的 (Staged)

メール統合のためにシステムが自動的に作成する特別なプレースホルダーアカウントです。

  • メールダイジェストは決して送信されません。
  • 参加しているすべてのメッセージを自動的にウォッチし、返信の通知を受信します。
  • 通知へのメール返信が可能です。
  • ユーザー名と名前は自動的に選択されます。
  • 同じメールでアカウントを登録し、段階的アカウントを「引き継ぐ」ことができます。
  • パスワードリセットメールを受信できません。

保存先: users テーブルの staged フィールド

管理者 (Admin)

管理者ユーザーはシステム内のスーパーユーザーであり、以下を行うことができます:

  • 非管理者になりすます
  • サイト設定を変更する
  • グループを作成する
  • サイトのカスタマイズを修正する
  • モデレーターが実行できるすべてのアクションを実行する
  • 任意の個人メッセージを読む
  • カテゴリを作成、削除、変更する
  • カテゴリの権限を無視してプライベートカテゴリを表示する

保存先: users テーブルのブールフィールド admin が管理者アカウントを示します。

モデレーター (Moderator)

サイトをモデレーションできるパワーユーザー:

  • 投稿の名前の横にシールドアイコンが表示されます。
  • スタッフが実行できるすべてのアクションを実行できます。

保存先: users テーブルのブールフィールド moderator

スタッフ (Staff)

スタッフユーザーとは、管理者またはモデレーター(またはその両方)であるユーザーのことです。

  • レート制限の影響を受けません。
  • フラグとモデレーションキューに保持されている投稿を処理できます。
  • トピックと投稿を削除し、トピックを分割、統合、非表示にできます。
  • ユーザー情報を表示できます(モデレーターはメールを除く)。
  • ユーザーを停止、サイレント化、匿名化、削除できます。
  • ユーザーの信頼レベルを調整できます。

保存先: users テーブルの admin と moderator 列から計算されます。

カテゴリモデレーター (Category Moderator)

これは、特定のグループに属しており、特定のカテゴリに対して選択されたモデレーション権限が付与されている非スタッフユーザーです。これは、enable category group moderation 管理設定を使用してサイトごとに有効にでき、カテゴリレンチの設定タブで各カテゴリに対して設定できます:

信頼レベル 0 - 4

参照: ユーザーの信頼レベルは何をするのか?

保存先: users テーブルの数値フィールド trust_level

停止中 (Suspended)

Discourse インスタンスから停止されたアカウントです。

  • ユーザーページに停止理由を示す注記が表示されます。
  • ログインは許可されていません。
  • アカウントはスタッフによってのみメンションできます。
  • 通知(ダイジェスト、メッセージなど)について、ユーザーにメールは送信されません。
  • 例外として、スタッフによって開始されたメールはユーザーに送信されます。

保存先: users テーブルの suspended_till 日付時間列

サイレント化 (Silenced)

スタッフが手動で行う場合、またはアカウントがスパムシステムによって問題のあるアカウントとしてフラグ付けされた場合、すべての投稿が無効になります。

  • アカウントは任意のトピックに返信できません。
  • アカウントは任意のトピックを作成できません。
  • アカウントは PM を作成できませんが、PM に返信できます。
  • アカウントはフラグを作成できません。
  • アカウントは「いいね」とブックマークを行うことができます。
  • アカウントはユーザー設定と自己紹介を変更できます(これが良いアイデアかどうかは未定)。
  • メーリングリストモードが機能しなくなります。

保存先: users テーブルの silenced_till 日付時間列


その他のステータス

ユーザーには、管理ダッシュボードの権限セクションに表示されない追加のステータスを持つ場合があります。

新規ユーザー (New user)

初日または新規アカウント向けの特別な制限付きアカウントです。new_users には、サイト設定で定義された特別なレート制限があります。

  • 過去 24 時間以内に作成された信頼レベル 1 のアカウント、または信頼レベル 0。
  • 非スタッフアカウント。

制限:

  • 30 秒に 1 回のみ投稿を作成できます (rate_limit_new_user_create_post)。

保存先: users テーブルの created_at, moderator, admin, trust_level 列から計算されます。

初日ユーザー (First day user)

最初の投稿から 24 時間以内のユーザーに適用される特別な追加制限です。

  • まだ投稿していない、または最初の投稿が 24 時間以内に作成された。
  • 非スタッフアカウント。
  • TL2 以上ではない。

制限:

  • 10 件の返信のみ作成できます (max_replies_in_first_day)。
  • 3 件のトピックのみ作成できます (max_topics_in_first_day)。

保存先: user_stats テーブルの first_post_created_at、および users テーブルの moderator, admin, trust_level 列から計算されます。

承認済み (Approved)

サイト設定 must_approve_users が有効な場合、ユーザーはログインを許可される前に approved である必要があります。

保存先: users テーブルの approved ブール列

開発者 (Developer)

Discourse をインストールするために使用される特別なアカウントです。

:spiral_notepad: このステータスはセルフホストインストールでのみ利用可能です。

  • ページのタイミングを表示する rack-mini-profiler を表示
  • 管理者を含む任意のアカウントになりすます
  • 自動的に管理者になり、すべての管理者権限を持つ

保存先: developer_emails グローバル設定または developers テーブルによって制御されます。Docker インストールでは、開発者であるユーザーのメールリストを指定するために環境変数 DISCOURSE_DEVELOPER_EMAILS を使用します。

追加リソース

カテゴリモデレーターに付与される特定の権限の詳細な内訳については、Trust Level Permissions Reference を参照してください。

「いいね!」 90
Modifying Staff Roles to go beyond Administrator and Moderator?
List of full moderation tools?
Deactivating users permanently
Improving Blocked User State
Which setting(s) would prevent Discourse from emailing an old user?
View Forum as User X
What permissions can admins give moderators?
How i can manage roles for moderators and administrators?
Levels and Staff roles
A new trust level: The Helpful member?
Discourse User Roles difference
Understading groups in discourse
How to disable mail for staged users?
Suspend all users apart from admin users for development copy
Who is able to change profile of another user
How do I block a user?
How does discourse count users?
A single number for users ranking (reputation like)?
Allow moderators to create groups
What is a staged user?
Discourse User Features
How to activate users after a large import of mbox archives
Disable DM visibility from Admins
Understanding Discourse Trust Levels
What are "staged users"?
Improving Blocked User State
Trying to understand "staff" slots and moderation in hosted plans
Promoting a User to Admin or Moderator Status
Moderators vs Staff
Adding users to the developers table
Error adding a backup email address: address already in use by a staged user
Trying to understand "staff" slots and moderation in hosted plans
Create staged users via API?
Admin ability to impersonate other admin differs between admins
My Wiki of useful Meta (and other) links
TOC missing after using browsers back button
Proposed: allow moderators to silence, not delete users flagged by akismet
Incorrect account stats
How to reply to staged user through discourse?
Daily Summary (9pm UTC)
Does the 'Posted' field in the user card include topics in private categories?
Users who are 'activated' but not 'approved'
Why are system and super admin both mod and admin?
Why are system and super admin both mod and admin?
Additional admins & moderators / staff users on pricing page
Unlisted option on creation of a new topic
Improving Blocked User State
Are banned members supposed to receive email notifications?
What is a staff user on hosted Discourse?
Limit the daily number of posts from a user
Major slowdown for staff in large topics
For how long a new user is considered "new user"?
How to invite someone to answer a question?
Auto-remove accounts when SSO ID is not longer valid
Best strategy for member who wants to "pause"? Suspend may not be it
How might we better structure #howto?
Send email to non registered user in a group
Difference between “member” and “staff user”
Send email to non registered user in a group
New pending application generates staff notification
Change user registration date (created_at) via API
Please update 'Understanding Discourse Trust Levels' — or is there a different doc?
When you started your first Discourse community, what did you find hard to do?
Can I enforce Slow Mode on a per-user basis or limit their comments?
Understanding Discourse Trust Levels
Watch topic using email address without requiring registration
Can T4 members access personally identifiable information?
How to get an API key