Section 1 1 min read

Roles

Access works in two layers.

Account roles apply to your own team:

Role Access
Tenant Owner Everything, in every space, plus the Audit Log, Settings and branding
Member The admin area, but only the spaces they belong to. To create or change content in a space they also need to be a Space Admin there

Space roles apply per space, to anyone:

Role Who Access
Space Admin Your team Manages the space: folders, files, requests, approvals, forms, signatures, members and branding
Internal Team Member Your team Sees the space, comments and acts on items assigned to them; cannot add content
External Customer Clients Uses the portal: files, requests, approvals, forms, signing, comments, and the Upload a file drop-box
Guest Clients The same as External Customer without the drop-box. Guest access can be given an expiry date

Two more things grant access. An Organization is a client company; when it is linked to a space, its people can be given access automatically. An email domain such as @acme.com registered against an organization lets anyone with a verified address on that domain in with a default role.