Skip to main content
Start here. Syncro limits an API token to the permissions of the user who creates it. The Neo user must therefore hold everything you want the token to have, and that comes from its security group.
1

Open Security Groups

In Syncro, go to Admin → Syncro Administration → Security Groups, then create a new group.
Security Groups under Syncro Administration in the Admin menu
2

Name the group and set Access Type to All Customers

Name it Neo Agent SG. Under Access Type, leave All Customers selected.
The New Security Group form with All Customers selected
Do not choose “Select Customers”. It scopes the group to specific customers, so Neo would sync and automate only that subset, with nothing to indicate the rest is missing. Same class of problem as the “mine only” ticket restriction.
3

Tick the permissions

Every permission is off by default. Open each group below and tick the chips listed; anything not listed stays off. Then create the group as the final section describes.

Permissions

Tickets

The core of the integration.
Tickets
CreateEditList/SearchMergeUse Ticket ChargesView DetailsView Their Ticket Details (Assigned To Them)
Ticket Comments
NewShareable Calendar Links (Manage)
Ticket Custom Fields
Manage
Ticket Tags
CreateView
Ticket SLA
Edit
Ticket Parent-Child
Edit
Ticket Attachments
View
Ticket Canned Responses
Manage
Ticket Blueprints
Create Ticket From BlueprintManage
Ticket Workflows
Manage
Ticket Worksheets
AddManage
Ticket Automations
CreateListRun Now
Recurring Tickets
CreateEditList
Ticket Timers
Add For Another TechnicianOverviewToggle Time Entry Billable State
Timelogs
Manage
Customers
EditList/SearchView Detail
Customer Tags
CreateView
Customer Mapping
View
Contact Tags
CreateView
Contracts
EditList/Search
Contacts has only Export and Import options; leave both off. Neo reads contacts through the customer permissions above, so there is no separate contact-view permission to find.
Assets
Allow Backgrounding ToolsAssets Pending ApprovalBulk Script ExecuteEditInstall Windows Patches ManuallyList/SearchRebootView Archived AssetsView DetailsView ThumbnailWake On Lan
Asset Custom Fields
CreateEditView
RMM Alerts
Clear/ManageCreateList
Automated Remediation
CreateEditList
Policies
List
Network Discovery
Run ProfileView Profile
Assets → Create, Delete, Archive, Allow Remote Access and Edit Policy stay off. Neo works on assets Syncro already knows about.
Scripts
EditExecuteFavoriteListNew
Script Categories
EditListNew
Script Categories Access
All Categories
Needed only if you want Neo to reason about billing. Safe to leave off otherwise.
Products
CreateEditEdit QuantitiesList/SearchView Cost
Estimates
CreateEditList/SearchView Details
Invoices
List/SearchView Details
Purchase Orders
List/SearchView Details
Parts Orders
List/SearchView
Line Item
View Cost
Invoices are read-only here: no Create, Edit, Delete or Refund. Neo can reference invoices without being able to change what a customer is billed.
API Tokens
Manage
Appointments
View All (See-Own Never Restricted)
Documentation
Allow UsageCreateEdit
Reports
View
API Tokens → Manage is required. Without it the Neo user cannot create its own API token, and you would have to create the token as an admin, which binds it to the admin account and defeats the point of a dedicated user.

Create the group and assign it

Click Create Group. Then create your dedicated Neo user (or edit it) and set its security group to Neo Agent SG.

Next Steps

Creating an API Token

Sign in as the Neo user and generate the API token.