JI User Types & Access Catalogue (as-is)
This page catalogues the as-is user types of the Judicial Information (JI) application (Oracle APEX) as operated by HMCTS. The source is
docs/architecture/asis/JI user types - 2.xlsx(Feb 2026 snapshot), which is authoritative for the role taxonomy and the active-user counts. It describes the current estate only; it does not define the target design.Baseline capability for every access type: access to standard reports. The capability lists below add to this baseline rather than repeat it.
At a glance
JI has 17 application access types across four groups, plus 1 configuration entry (Payment Authoriser) that is not an application access type. The as-is catalogue records 2,818 active users as of Feb 2026.
| Group | Access types | Active users (Feb 2026) |
|---|---|---|
| Court | 5 | 2,196 |
| Regional | 5 | 195 |
| Judicial | 6 | 386 |
| Finance | 1 | 39 |
| Application access types — total | 17 | 2,816 |
| Configuration: Payment Authoriser distribution list | — | 2 |
| Catalogue total | — | 2,818 |
Sitting & booking lifecycle (Confirm → Verify → Re-open)
Several access types are defined by their position in the sittings/bookings release lifecycle. Recording this once here so the per-role capability lists can refer to it.
- Confirm — A Court user (Full Access, Enhanced CJ, Limited) records that yesterday's sitting / booking took place, with actual work type and any AM/PM split. Performed daily.
- Verify — A Verifier (Court or Regional) signs off batches of confirmed sittings / bookings, typically monthly. Verification locks the records and releases them to be reported on.
- Re-open — Privileged correction action against a verified record. Granted to Regional (Admin) only. The re-opener must be different from the original confirmer; a justification is captured and the action is audited.
A Verifier cannot confirm sittings or bookings — confirmation and verification are separated by design (segregation of duties).
Court access types
5 access types, 2,196 active users. Scope is the office(s) the user is assigned to.
Court (Full Access) — 1,442 active users
Standard access level for users in the courts.
Capabilities:
- Full access (view, create, maintain) to District Judge judge profiles only.
- Confirm sittings for all judge types at assigned location(s).
- Confirm bookings for all judge types at assigned location(s).
- Request absences for judges at assigned location(s) — Regional team approval required.
- Request vacancies for judges at assigned location(s) — Regional team approval required.
Q2 resolution (2026-05-12): the xlsx description is not contradictory. Profile-maintenance access (full edit) is limited to DJ; sittings/bookings confirmation is location-scoped and works against all judge types. These are two distinct capabilities.
Court (Enhanced CJ) — 224 active users
Enhanced access for court users in certain regions where Circuit Judge cover is required.
Capabilities:
- All capabilities of Court (Full Access).
- Additionally: full access (view, create, maintain) to Circuit Judge profiles.
Court (Limited) — 132 active users
Limited access for court users. Same daily operational footprint as Full Access but without the judge-profile maintenance privilege.
Capabilities:
- Confirm sittings for all judge types at assigned location(s).
- Confirm bookings for all judge types at assigned location(s).
- Request absences for judges at assigned location(s) — Regional team approval required.
- Request vacancies for judges at assigned location(s) — Regional team approval required.
Q3 resolution (2026-05-12) — inferred from the xlsx description "as per Full Access but doesn't include full access to any judge types": the only material difference between Court (Limited) and Court (Full Access) is that Limited cannot maintain District Judge profiles. Confirmation of sittings/bookings, absence and vacancy requests are unchanged. Flagged for confirmation with JI-experienced users.
Court (Read-only) — 27 active users
Read-only access for court users.
Capabilities:
- View the same data set Court (Full Access) can view, with no write actions (no profile maintenance, no confirm, no requests).
Court (Verifier) — 371 active users
Verifier access for court users. Performs step 2 of the sittings/bookings release lifecycle.
Capabilities:
- Cannot confirm sittings or bookings.
- Verify sittings that have been confirmed by another user (typically monthly).
- Verify bookings that have been confirmed by another user.
- View the same data set Court (Full Access) can view.
Verification releases verified records for reporting. See Sitting & booking lifecycle.
Regional access types
5 access types, 195 active users. Scope is the Region the user is assigned to, optionally narrowed by Area.
Regional (Admin) — 75 active users
Regional user with elevated administrative powers.
Capabilities:
- All capabilities of Regional (Full Access).
- Send user-creation requests to the Advice Point (operational process to create new JI users for the region).
- Re-open verified sittings / bookings (privileged action). Justification captured, must differ from original confirmer, audited.
Q11 from the xlsx (whether Regional Admin should create users directly without an external operational process) remains an open question against the as-is catalogue.
Regional (Full Access) — 68 active users
Standard access level for regional users.
Capabilities:
- Full access (view, create, maintain) to records for all judge types in the region.
- Create bookings for fee-paid judges.
- Amend bookings for fee-paid judges.
- Create absences for judges in the region.
- Approve absences requested by Court users.
- Create vacancies in the region.
- Approve vacancies (including those auto-created from approved absences).
- Cannot confirm sittings or bookings — confirmation is a Court-level function only.
Regional (No Fees) — 14 active users
Restricted access for Regional users who must not transact on fee-paid bookings.
Capabilities:
- All capabilities of Regional (Full Access) except:
- Cannot create bookings for fee-paid judges.
- Cannot amend bookings for fee-paid judges.
Regional (Read-only) — 23 active users
Read-only access for Regional users.
Capabilities:
- View the same data set Regional (Full Access) can view, with no write actions.
Regional (Verifier) — 15 active users
Verifier access at Regional scope.
Capabilities:
- All capabilities of Regional (Full Access).
- Verify confirmed sittings for all courts in the region.
- Verify confirmed bookings for all courts in the region.
Q12 from the xlsx (national-level access): no national-level access type exists in the as-is catalogue except Finance. All other roles are scoped by Region/Area or by judge linkage.
Judicial access types
6 access types, 386 active users. Scope varies — see each entry.
Judge — 273 active users
Standard access level for a judge.
Scope: the judge's own record only (R2 — no case-level data, no access to other judges' data).
Capabilities:
- View own record (profile, working pattern, tickets).
- View own itinerary and forward look.
- Request absences against own record where permitted — Regional team confirmation may be required.
Judge's Clerk — 2 active users
Clerk to a salaried judge, acting on the judge's behalf.
Scope: the linked judge(s) the clerk supports.
Capabilities:
- Same capability surface as Judge, but exercised on behalf of the linked judge(s).
Q7 from the xlsx (whether Judge's Clerk differs from Judge): the as-is catalogue records them as functionally identical from an access-control standpoint — the only distinction is which judge's record(s) the principal is linked to. The separation exists for audit clarity (the Clerk acts on someone else's behalf).
Presiding Judge — 2 active users
Leadership judge with oversight of a group of judges (typically a Circuit's salaried judges).
Scope: all judges who fall under the Presiding Judge's leadership.
Capabilities:
- Same capability surface as Judge, exercised across all judges under their leadership.
Q9 from the xlsx (why so few users): low headcount is structurally expected — there are very few presiding judges nationally.
Presiding Judge's Clerk — 0 active users
Clerk to a Presiding Judge.
Scope: the linked Presiding Judge's leadership group.
Capabilities:
- Same capability surface as Presiding Judge, exercised on behalf of the linked Presiding Judge.
No active users in the as-is catalogue (Feb 2026). The access type exists in JI (Q6 confirmed) and is provisioned but currently unused.
Judge Itin View Only — 107 active users
CTSC (Courts and Tribunals Service Centre) operational users who need to know whether and where a judge is working.
Scope: national, but with significant data restrictions (see below).
Capabilities:
- View judges' itineraries only — no profile, working pattern, absence, vacancy, booking, or sitting detail.
- Massively cut-down information surface. Used operationally to identify (a) whether a judge is working on a given date and (b) where they are sitting.
Q8 from the xlsx (exact contents of "very limited information"): the precise field set is not specified in the as-is catalogue. Recorded as an open question against the as-is catalogue.
Judicial College — 2 active users
Users within the Judicial College (training body for judges).
Scope: national, read-only.
Capabilities:
- View a cut-down version of Court itineraries.
- View Absences associated with those itineraries.
- View Vacancies associated with those itineraries.
- View Bookings associated with those itineraries.
- All views are read-only — no write actions of any kind.
Q5 from the xlsx (exact contents of the cut-down Court itinerary view): not specified in the as-is catalogue. Recorded as an open question.
Finance access types
1 access type, 39 active users.
Finance — 39 active users
Users within HMCTS finance who generate JFEPS payment schedules.
Scope: National — no Region/Area scoping. A Finance user can produce payment schedules covering all Regions/Areas.
Capabilities:
- Produce payment schedules — JFEPS-compatible Excel — across all courts and circuits nationally.
- Each generated schedule is automatically emailed to a configured Payment Authoriser (see Payment Authoriser configuration).
Q4 from the xlsx (scope of payment schedules): confirmed national — a Finance user can produce schedules across all areas (2026-05-12).
Payment Authoriser (configuration, not an access type)
The Payment Authoriser is not a JI application access type. It is a configuration entry — the addressable identity (name + email) to whom Finance-generated JFEPS payment schedules are emailed for forwarding to Liberata.
- The Payment Authoriser is held as configuration in JI, not as an authenticated user.
- Finance users select a Payment Authoriser when generating a payment schedule; JI emails the JFEPS Excel to that recipient.
- The recipient does not log into JI. They receive the JFEPS Excel by email and forward it to Liberata out-of-system.
- 2 individuals are recorded against this entry in the as-is catalogue (Feb 2026).
Source
docs/architecture/asis/JI user types - 2.xlsx— authoritative as-is catalogue (Feb 2026 snapshot)
Source: _bmad-output/planning-artifacts/architecture/user-types.md