Invite your team

Give each teammate their own sign-in and the right level of access, so everyone sees the same agents and records. Only an owner or admin can invite. On the Free plan a workspace has the owner plus one viewer; Team and Business have unlimited teammates.

Roles

RoleCan
OwnerEverything, including members and deleting the workspace. The last owner cannot be removed.
AdminManage members, environments, agents and gateways.
ReviewerReview and approve rules. No configuration changes.
ViewerRead activity and evidence.

Send an invitation

  1. Open Settings → People & access.
  2. Under Invite a teammate, enter an email address and a role, then choose Send invitation.
  3. Under Pending invitations, use Resend for a fresh link or Revoke to cancel.

Links last 48 hours. The email never includes receipts or policy content.

Accept an invitation

  1. Open the link in the email.
  2. Sign in with Google, Microsoft or GitHub, using the address the invitation was sent to.
  3. Check the workspace name and your role, then choose Accept and join.

The invitation counts as beta approval. If you are signed in with another account, sign out first.

Change a role or remove someone

  1. Open Settings → People & access. Owners and admins see a Manage column.
  2. To change a role, pick it from Change role…. To remove someone, choose Remove, then Yes, remove.

Only an owner can change or remove another owner, or make someone an owner. To hand the workspace to someone else, make them an owner, then change your own role to admin. A workspace always keeps at least one owner, so the only owner can be neither removed nor demoted.

Removing a member takes effect on their next request. Their agents stay, and show "Former or unassigned member" as the responsible person until you assign someone else. Membership changes appear in the audit log under Settings, where owners and admins can download it as CSV or JSON (the newest 5,000 changes per file).

Company sign-in (SSO)

On the Business plan, your team can sign in through Okta, Microsoft Entra ID, Google Workspace or another OIDC provider. Only the owner can set it up.

  1. In your identity provider, create an OIDC web app. Use the redirect URL shown under Settings → Company sign-in (SSO).
  2. In Scopebond, enter the issuer URL, your company email domain, and the client ID and secret, then choose Connect.
  3. Add the DNS TXT record shown, then choose Verify domain.

People with an email on that domain then choose Sign in with company SSO and enter their work email. New people join as viewers; raise roles under Team.