Read-only permissions

Auditor is a good start. You can build your own roles if you want to specify it in more detail.