cdn.pizzaDocumentation

Account and organization

Organizations and roles

An organization isolates its domains, files, networks, invoices, and integrations.

#Overview

An organization isolates its domains, files, networks, invoices, and integrations.

#Roles and separation of duties

Owners and admins control sensitive settings; members operate day-to-day resources; viewers remain read-only. Billing, webhooks, alert channels, and BYOC tokens can require owner/admin even when the resource is visible.

An invitation carries a role and expires according to service policy. Once accepted, the member receives access only to the current organization; role changes apply to subsequent requests.

#Manage a member

  1. Invite their address from Organization.

  2. Assign the least role compatible with the work.

  3. Verify acceptance and expected access.

  4. Reduce the role or remove the member when the work ends.

#Permissions by role

Actionowneradminmemberviewer
View members, invitations, and summaryReadReadReadRead
Edit organization and billing identityAllowedAllowedNoNo
Invite, remove, or change member/viewer usersAllowedAllowedNoNo
Assign or manage an adminAllowedNoNoNo
Customer documentationReference generated from published interfaces