Access Model
Voltage access has several layers. Choose the layer that matches the work: team-level dashboard access, an environment-scoped Payments API key, an organization-scoped Infrastructure API key, or direct LND credentials.
These credentials are not interchangeable. Grant the narrowest access that supports the required workflow.
Quick guide
Need | Use | Scope |
|---|---|---|
View team resources in the dashboard | Team Read | Team-level UI access where the route permits it |
Operate supported resources in the dashboard | Team Write | Team-level UI actions where the route permits them |
Application access to Payments | Payments API key | One Payments environment and the key's permissions |
Automate hosted-node management | Infrastructure API key | Organization-scoped infrastructure workflows; keys are owner-managed |
Call LND directly | LND endpoint, TLS material, and macaroon | Methods authorized by that macaroon |
Team permissions
Team permissions govern human access to the Voltage dashboard. They are not scoped to a single Payments environment.
- Read: view resources on permitted pages.
- Write: create or modify supported resources and settings on permitted pages.
- Team management: invite, remove, and update team members and their roles.
- Owner: organization-owner actions, including Infrastructure API key management in the current product.
A permission name does not override a more specific credential or node-security boundary.
Payments UI permissions
Payments dashboard access follows team permissions. Team-level UI permissions apply across the team's Payments environments rather than to only staging or only production.
- Read: view Payments resources exposed by the dashboard.
- Write: create or manage supported Payments resources and create environment API keys.
When human UI access must be isolated between staging and production, use a separate team boundary and confirm the current operating model with your Voltage owner.
Payments API key permissions
Payments API keys are environment-scoped. A key can access only its selected environment and the actions allowed by its configured permissions.
- Read: view supported resources in the selected environment.
- Write: create or manage supported writable resources in the selected environment.
Payments write access can affect funds available to Payments wallets. Treat write keys as sensitive production credentials.
Infrastructure dashboard permissions
Infrastructure dashboard access also follows team permissions, with additional checks for sensitive actions.
- Team Write: create or modify supported infrastructure resources and settings on permitted pages.
- Owner: create, list, and delete Infrastructure API keys in the current dashboard and backend.
- Node-sensitive material: team permissions alone do not bypass node-password, macaroon, or other credential checks.
Voltage Infrastructure API
The Infrastructure API manages Voltage-hosted node infrastructure. It is separate from both the Payments API and direct LND access.
- Purpose: supported organization-scoped node inventory, lifecycle, settings, and connection-material workflows.
- Authentication: an owner-managed Infrastructure API key sent in the X-VOLTAGE-AUTH header.
- Credential model: Infrastructure API keys do not replace Payments API keys or LND macaroons.
- Access boundary: the Infrastructure API does not bypass node-password or LND macaroon permissions.
See Voltage Infrastructure API for the maintained base URL, lifecycle safeguards, and documentation scope.
Direct node access
Direct LND access is a separate path from dashboard permissions and API keys.
- Use the node endpoint and current TLS or certificate material described in Configuration.
- Use an LND macaroon whose baked permissions match the required methods.
- Prefer narrow credentials for observation, invoicing, or other limited workflows.
- Keep macaroons, TLS material, pairing phrases, and node credentials server-side.
- Use Node Security and Macaroons for the maintained custody and least-privilege guidance.
Historical remote LNCLI syntax remains omitted until current Voltage support is verified.
Recommended setup
- Keep team Owner and Team management access limited to trusted operators.
- Use Team Read or Write only for the dashboard work each person needs.
- Use separate teams when human staging and production UI access must be isolated.
- Issue environment-scoped Payments API keys to applications that use the Payments API.
- Have an organization owner create dedicated Infrastructure API keys for backend node-management systems.
- Use narrowly scoped LND macaroons for direct node integrations.
- Review and remove access during role changes, incidents, and production launches.