Privilege - The most granular element defining a single action the employee can perform. For example, a user with the ADD_PERSON privilege can add new person records.
Role - A set of privileges defining activities the user can perform with the respective role.
BackOffice User - A human operator who accesses the Tuum system through the BackOffice interface.
API user - A programmatic operator who accesses the Tuum system through API endpoints.