Team Management
Manage who has access to your organization, what they can do, and how permissions are structured. All team management actions are performed from the Users page in the portal.
Inviting Members
To add someone to your organization, navigate to the Users page and select “Invite Member.” Enter the person’s email address and choose the role they should be assigned. The invitee receives access immediately and can sign in to view resources according to their assigned role.
You can invite multiple members at once. Each invitation consumes one seat from your plan’s user limit. If you have reached your plan’s user cap, you will need to upgrade or remove an existing member before sending new invitations.
Role Reference
Every member is assigned exactly one role. Roles determine which areas of the platform a member can access and what actions they can perform. The table below shows the full permission matrix.
| Capability | Viewer | Analyst | Endpoint Admin | Security Admin | Admin | Owner |
|---|---|---|---|---|---|---|
| View analyses | ||||||
| Upload files | ||||||
| Manage agents | ||||||
| Manage approvals | ||||||
| Manage API keys | ||||||
| Manage team | ||||||
| View audit log | ||||||
| Manage settings | ||||||
| Assign owner |
Choosing the Right Role
Follow the principle of least privilege: assign each member the minimum role required for their responsibilities. This limits the blast radius of compromised credentials and reduces the risk of accidental configuration changes.
Viewer
Read-only access to analysis results. Ideal for stakeholders, auditors, or executives who need visibility without the ability to make changes.
Analyst
Can view analyses and upload files. Best for day-to-day security analysts and team members who investigate files and triage findings.
Endpoint Admin
Everything an Analyst can do, plus managing endpoint agents. Use this role for IT or operations staff responsible for the agent fleet.
Security Admin
Can manage approval rules and view the audit log. Suited for security leads who define organizational policies and review compliance.
Admin
Full organizational management: team, settings, API keys, agents, and approvals. Assign this to IT managers or security directors who need complete control.
Owner
All Admin permissions plus the ability to transfer ownership. Every organization has exactly one Owner.
Owner Protections
Each organization has exactly one Owner. The Owner role cannot be removed or downgraded by other Admins. Transferring ownership requires an explicit action by the current Owner from the Users page: select the member who should become the new Owner and confirm the transfer. Once transferred, the previous Owner is downgraded to Admin.
Important: ownership transfer is immediate and cannot be undone by the previous Owner. Make sure you are assigning ownership to the correct person before confirming.
Deactivating Members
To remove someone from your organization, select the member on the Users page and choose “Deactivate.” Deactivation removes the member’s access immediately. They will no longer be able to sign in or interact with your organization’s data.
Deactivation does not delete the member’s analysis history or audit trail. All uploads and actions they performed remain in the system for compliance and auditing purposes. The freed seat becomes available for a new invitation.