Users
Use the Users page to manage who belongs to the organization and what level of access they start with.
This page is the entry point for:
- inviting members
- reviewing who already has access
- changing user type
- assigning roles
- removing access when needed
This page is about granting the right starting access. Fine-grained governance comes after that through roles and access domains.
Access
- Click the Organization icon (building)
- Select "Users"
Only administrators and owners can manage users.
User types
Each user has a global type that defines their baseline rights:
| Type | Description |
|---|---|
| Owner | Full organization control, including billing and subscription decisions |
| Administrator | Manages organization settings, users, and governance |
| Editor | Contributes to the knowledge base and content according to assigned rights |
| Viewer | Reads the knowledge base and content according to assigned rights |
Editors, administrators, and owners count toward the Users limit of your plan. Viewers count toward the Viewers limit.
Administrators and owners can review current limits on the Organization page, in the Plan card.
In self-service organizations, Owner is the billing owner account. It cannot be created manually or removed.
Invite a user
- Click "Invite User".
- Fill in:
- Email: User's address.
- User type: Viewer, Editor, or Administrator.
- Roles: Business roles to assign (optional).
- Click "Create".
The user receives an invitation email with a link to create their account or sign in.
If your organization uses SSO, users are automatically created on their first login via your Identity Provider. They appear as Viewers by default.
Manage a user
Change type
- Click on the user in the list
- Change type in the selector
- Click "Validate"
If you change an existing editor or administrator to Viewer, Boldo warns that their private items are deleted.
Change roles
- Click on the user
- Select roles to assign
- Click "Validate"
Roles define fine-grained permissions. Access domains then scope where those permissions apply.
Read Understand the access model for the detailed model.
Remove a user
- Click on the user
- Click the delete icon
- Confirm
The user immediately loses access. This action is irreversible.
You cannot remove the organization owner account.
For an SSO organization, first remove the user from your Identity Provider.
What to decide first
Before assigning anything, answer these questions:
- does this person only need to read, or also to contribute?
- does this person need a paid Users seat, or only Viewer access?
- is broad organization administration really required?
- does the person need fine-grained access through roles and access domains?
If you decide the user type correctly first, the rest of the setup becomes much easier.