Roles and permissions

Owner, admin, and member — what each role can do, and how workspace invitations work.

3 min read

A workspace has three roles. They are deliberately coarse: a permission model with twenty checkboxes is a permission model nobody configures correctly.

CapabilityOwnerAdminMember
Read boards, roadmap, changelogYesYesYes
Post, comment, change post statusYesYesYes
Create and delete boardsYesYesNo
Publish release notesYesYesYes
Declare and resolve incidentsYesYesNo
Invite and remove teammatesYesYesNo
Create and revoke API keysYesYesNo
Change billing and planYesNoNo
Delete the workspaceYesNoNo

Inviting a teammate

  1. 1

    Open Settings → Team.

  2. 2

    Enter their email and pick a role.

  3. 3

    They accept from the emailed link.

    The link signs them in and joins them to the workspace in one step — they never choose a password, and an invite that is never accepted grants nothing.

There is exactly one owner

Billing and workspace deletion are owner-only. Before the owner leaves the company, transfer ownership — an orphaned workspace needs a support ticket to recover.

NextBoards, posts, and votes

Something unclear or wrong? Tell us — or post it on our board.