Skip to main content
Team management lets you control who has access to your Inworld account and what they can do. It is available on Builder plan and above. Once your team exists you can also verify your email domains so colleagues join automatically, connect SAML SSO so they sign in through your own identity provider, and — on Enterprise — turn on SCIM provisioning so your IdP manages membership for you.

Create a Team

To create a team:
  1. Go to the account menu, and click + Create Team. Create team
  2. Enter a team name
  3. Select a workspace to invite all team members to
This will convert your Personal account to a Team account. The Team account will inherit your existing billing and subscription.
You can own one team at a time.

Why a shared workspace is required

Step 3 is not optional. A team must always keep at least one workspace shared with the whole team, so everyone you add has somewhere to collaborate. Two consequences:
  • Adding people is blocked without one. Invitations, domain auto-join, and bulk member imports all fail until at least one workspace is shared with the team.
  • You cannot un-share the last one. Removing team-wide sharing from your only shared workspace — or deleting that workspace — is rejected. Share another workspace first.
You can share a workspace with the team from the workspace itself, or with Share with team in the Invite member dialog.

Managing team members

Owners and Admins can manage team members from the Team page in the Portal.

Organization roles

Organization-level roles control account-wide permissions such as billing and user management. These are separate from workspace and project roles, which control access to specific workspaces and their contents.
  • Owner — Full control over billing and team membership. Every organization must have at least one owner.
  • Admin — Can invite and remove team members and change roles, but cannot manage billing.
  • Member — Can access the organization’s workspaces but cannot manage billing or team settings.
Organization roles do not affect workspace-level permissions. A user’s access within a specific workspace is determined by their workspace role. Removing someone from the organization does not automatically remove them from individual workspaces.
Every organization must keep at least one Owner. Changing the last Owner’s role, or removing them, is rejected — promote someone else to Owner first.

Inviting a member

  1. Go to the Team page.
  2. Click Invite member.
  3. Enter the user’s email address and select a role.
  4. The user receives an email invitation to join the organization.
Invitations also work for people who do not have an Inworld account yet — they sign up with the invited address and land directly in your organization. The invitee must sign in with the exact address you invited and accept explicitly, so an invitation can never add someone without their consent. Acceptance is authorized by the invitee’s own verified email, which also means forwarding the link does not let a colleague join in their place. Inviting the same email at the same role twice returns the existing invitation rather than sending a duplicate.

Invitation lifecycle

Pending invitations are listed on the Invitations tab, which also shows how many are still awaiting a response.
  • Invitations expire after 7 days. To re-send, revoke the old invitation and invite the address again.
  • Revoking a pending invitation stops its link working immediately.
  • Roles are fixed at invitation time. To change the role an invitee will receive, revoke and re-invite at the new role.
  • Revoking an already-accepted invitation is only a records cleanup — it does not undo the membership it created. Remove the member instead.

Changing a member’s role

  1. Go to the Team page.
  2. Find the member and select a new role from the dropdown.
Select several members with the checkboxes to change roles or remove people in bulk.

Removing a member

  1. Go to the Team page.
  2. Find the member and click Remove.
Removing a member from the organization does not revoke their access to individual workspaces. To fully remove access, also remove them from any shared workspaces.

Members synced from your identity provider

If your organization uses SCIM provisioning, members created by your identity provider are marked Synced on the Team page and cannot be edited or removed there — their membership and role come from your IdP. Change them in your IdP, or turn SCIM provisioning off to manage them in the Portal again.

Personal vs. Team accounts

If you belong to a Team, you can switch between your Personal account and any Team you’re part of using the account menu in the top-right corner. Your selection determines which workspaces appear in the workspace selector:
  • Personal or Team workspaces — When you select your Personal account, you see your personal workspaces. When you select a Team, you see workspaces that were shared with that Team.
  • Shared with me — Workspaces that have been shared directly with your account always appear here, no matter which account or Team you have selected.

Next steps

Verify your domains

Let colleagues join automatically, and unlock SSO and SCIM.

Set up SAML SSO

Let your team sign in through your identity provider.

SCIM provisioning

Let your IdP create, update, and deactivate members.