Members, roles, and invitations
Control who belongs to a workspace, what they can do, and how access changes over time.
Choose roles deliberately
Workspace roles set the baseline for access. Product-specific controls can narrow access further.
- Owners control the workspace and its highest-impact settings.
- Administrators manage members, configuration, and assigned operational areas.
- Members perform normal workspace work within granted products.
- Viewers receive read-oriented access where supported.
- Use least privilege and review elevated access regularly.
Invitation lifecycle
Invitations are identity-bound records, not permanent public links.
- 1Send
Invite the exact email address and select the intended role.
- 2Verify
The recipient signs in or creates an account using that email and completes email verification.
- 3Accept
The invitation is validated again before membership is created.
- 4Manage
Resend a current pending invitation, revoke one that should not be used, and remove membership when access ends.
If a link has ended, use Resend from the current invitation record. Old notification links remain invalid even if another invitation is active.
Review access
Periodically review owners, administrators, inactive members, product permissions, API keys, and external invitations.
Tell us what was missing and include the page title.