Team and settings

Members and roles

5–10 min

Organization owners add coworkers with Create org member (direct provisioning). Email domains must match verified organization domains. Then assign workspace access and optional capability overrides.

Why it matters

Right-sized roles and workspace access protect data while letting analysts build.

When to use

  • Onboarding a teammate.
  • Changing someone’s workspace access or capabilities.
  • Offboarding.

How to use

  1. Open Settings → Members.
  2. As org owner, choose Create org member.
  3. Enter details for an email on a verified organization domain and set a strong password.
  4. Save the credentials securely and share them with the teammate out of band.
  5. Use Workspace access to grant the right workspaces and roles.
  6. Adjust permission overrides when someone needs more or less than the default role.
  7. Remove access when someone leaves.

Click path

  1. Settings → Members → Create org member.
  2. Member row → Workspace access / Edit user permissions.

Success check: The member appears, can sign in, and reaches the intended workspaces.

Common mistakes

  • Using an email domain that is not verified for the organization.
  • Forgetting to assign workspace access after creating the member.
  • Expecting a public self-serve invite link instead of owner provisioning.

Members list, Create org member, and workspace access.

Screenshot or short video will appear here.