tl;dr: users’ permissions can now be escalated on a per-project basis and auditing user access has become easier.
We’ve recently released an upgrade to Gencove’s permission system, which enables escalating permissions on a per-project basis. This is done by specifying a project-specific role in addition to the user’s organization role and can be done separately for each project in the organization.
For example, in a situation where the organization would like users to have view access to only a subset of projects, users with the Owner role in the organization would invite others to join the organization with the Member or Uploader role and assign project-specific Viewer roles as needed.