← Back to Help CentreWorkspace & Teams
Setting role-based access controls
Give each member only the permissions they need with workspace roles.
Role-based access keeps sensitive controls — like DNS, billing, and member management — in the hands of the people who should have them, while everyone else gets what their job needs and no more.
The built-in roles
- Owner — full control, including billing and deleting the workspace.
- Admin — manages members, domains, DNS, and email, but not billing ownership.
- Member — uses email, workspace, and shared resources.
- Billing — manages invoices and payment methods only.
Assigning roles
Set a role when you invite someone, and change it any time under Workspace → Members. Follow least privilege: grant Admin sparingly, and prefer the Billing role over Owner for a bookkeeper who only touches invoices.
Did this help?
If you still need a hand, our support team usually replies within a few hours.
Contact support →