Workspace membership gives teammates access to the projects in that workspace. Open the workspace’s Settings page to see accepted members, pending invitations, and each person’s role.
Choose a role
| Role | Access |
|---|---|
| Admin | Read and write projects, manage workspace settings, invite and remove members, and change roles. |
| Developer | Read and write projects, and view workspace members. |
| Viewer | Read projects and view workspace members. |
Roles apply across the workspace. The person who creates a workspace starts as an admin. A workspace must always have at least one admin.
The Billing badge identifies the person paying for the workspace. Billing responsibility is separate from the member’s role; it does not grant admin permissions. See Billing owner for billing transfers.
Invite a teammate
You must be an admin to send invitations.
- Open the workspace’s Settings page.
- Under Members, select Invite Member.
- Enter the teammate’s email address and choose Admin, Developer, or Viewer. The default is Developer.
- Select Send.
The invitation appears in the member list with a Pending badge until it is accepted. You cannot invite an email address that already belongs to a member or has a pending invitation in the workspace.
An invitation expires after seven days. Use Resend invite on the pending invitation to send a new link and restart the seven-day window. Resending invalidates the previous link. Use Cancel invite to revoke an invitation that is no longer needed.
Accept an invitation
Open the invitation link from the email and sign in with the account matching the invited email address. The invitation page shows the workspace name, email address, and assigned role. Select Accept Invite to join and open the workspace’s projects.
If you are signed in with a different email address, the page displays the mismatch and does not offer acceptance. Sign in with the invited account before continuing. If the link has expired, ask a workspace admin to resend it and use the newest email.
If the workspace requires two-factor authentication and your account does not have it enabled, you will be directed to set it up after accepting.
Change roles and remove members
Admins can change a role using the role selector beside a member or pending invitation. The role on a pending invitation is the role the teammate receives when they accept it.
Changing your own role from Admin asks for confirmation because you immediately lose the ability to manage the workspace. You cannot demote the last admin; promote another member first.
To remove an accepted member, use Remove member beside their name and confirm. Their workspace access ends immediately. Members can remove themselves with Leave workspace. The same constraints apply when removing someone or leaving:
- The last admin cannot be removed or leave until another member becomes an admin.
- The billing user cannot be removed or leave until billing responsibility is transferred to another accepted member.
Require two-factor authentication
An admin can enable Require two-factor authentication under Security in workspace settings. Enable two-factor authentication on your own profile before turning on this requirement.
Members without two-factor authentication must set it up on their profile before continuing to use the workspace and its projects. The Security Check screen provides a Set up 2FA button. Accepted members with two-factor authentication enabled show a 2FA badge in the member list.