Users
The Users tab is your organization's member list. It's the first tab in the Directory area, and it's where you invite people, see who has joined, check their status and role, and open any individual to manage their profile, roles, and access.
You'll find it under Directory → Users in the console. The Directory also has a Groups tab - see Groups.
The overview at a glance
At the top of the Users tab, three stat cards summarize your membership:
- Total Users - everyone in your organization, whatever their status.
- Active Users - members who have accepted their invitation and can sign in.
- Pending Invitations - people who have been invited but haven't verified their email yet.
These counts give you a quick read on adoption - how many invitations are still outstanding versus how many people are actively using your products.
Browse and search the member list
Below the stat cards is the member table. Each row shows:
- Users - the member's avatar, name, and email address. Your own row is tagged with a You badge so you can spot yourself quickly.
- Status - a colored badge: Active, InActive, or Invited (see Member states below).
- Organization Role - the member's role in your organization (Owner, Admin, or Member).
- Joined At - the date the member joined.
Selecting any row opens that person's user details.
Search
Use the search bar to find people by email or name. Typing filters the list as you go, so you don't need to page through everyone to reach one person.
Filters
Next to the search bar, two filters narrow the list:
- Status - show only Active, Inactive, or Invited members. You can pick one status at a time.
- Products - show only members who have access to one or more of the products you select. This filter appears only when your organization has products available to filter by.
If your search or filters leave you with no matches, the empty state offers a Clear filters action that resets the search box and both filters in one click, so you can get back to the full list quickly.
Invite members
Select Invite users to open the invitation dialog. From here you can bring one or several people into your organization at once.
The dialog walks through:
- Email addresses - enter one or more. You can add several people in a single invitation.
- Product access - if your organization has products, a product table lets you choose a role for each product you want the new members to have access to. The role decides what they can do inside that product.
- Organization role - choose whether the invitees join as Admin or Member. Admins can manage organization settings and members; Members cannot.
- Redflare roles - optionally assign one or more Redflare roles to the invitees up front.
- Send invitation - when checked, an invitation email goes out so the person can accept and set up their account.
- Customize invitation - optionally add a personal message to the invitation email. Turning this on automatically enables sending the invitation.
Select Invite to send. The new people appear in the list with an Invited status until they verify their email.
Invited members count toward Pending Invitations until they verify their email and become Active. You can resend an invitation later from the person's details - see Account actions.
Open a user's details
Open a member from the list to see their details. A breadcrumb at the top takes you back to the Directory.
The header shows the person's avatar, name, email, organization role, and current status. If you're viewing your own record, it's marked so you know it's you. The header's top-right Account actions menu holds the administrative actions you can take on this member - see Account actions.
Below the header, the details are organized into sections you switch between from a side menu - Data Policies, Roles, and Licenses - so you can focus on one part of the member's access at a time.
Each section is scoped to a single product. A row of app pills sits above the content; pick a product and the roles, data policies, license, and access matrix below all reflect that member's standing in that product. Switch pills to compare across products.
Data policies
The Data Policies section lists the data-access policies that apply to this user - both policies assigned directly to them and policies they inherit from the groups they belong to (each inherited policy is badged with the group it comes from). This is where a user's group membership becomes visible: joining a group brings along that group's policies.
To manage which groups a person belongs to, use the Groups tab - membership is managed from the group, not from the user. Data policies themselves live in Access control.
Roles
The Roles section shows the roles assigned to this user. A user's effective permissions are the union of every role they hold. From here you can:
- Assign roles - open the picker and select one or more roles to add.
- Remove a role - each assigned role has a remove action.
Roles come from your organization's role list. For the bigger picture of how roles grant permissions, see Access control.
Licenses
The Licenses section manages the member's license for the selected product, and shows the access that license grants them.
At the top, you see the member's current license (its type and status) with a Revoke action, or a note that they hold no license yet. Below it, a picker lists the license types in your plan. Each option shows its seat usage - for example QA (2/10), or ∞ for an unlimited type, or (not in plan) for a type your subscription doesn't include. A type whose seats are full is greyed out and can't be chosen. Pick a type and select Assign (or Change, if they already hold one) to apply it.
Seat counts here are the same pool shown on the Billing → Subscriptions tab. Assigning a license uses a seat; revoking one frees it.
Access matrix
Beneath the license picker, the access matrix shows what the member can actually do in the selected product, given their license and roles. It lists each module the license allows, and within each module the individual permissions. A permission is shown as granted (filled) when one of the member's roles grants it, or allowed but not granted (muted) when the license permits it but no role has turned it on. A small legend explains the two states.
This makes the relationship clear: the license sets the ceiling of what's possible, and roles decide which of those allowed permissions the member actually has.
Grant access to a product
Use Grant Access to give a member access to a product they don't have yet. This is how you add someone to a product after they've already joined your organization, without re-inviting them.
The dialog lists only the products this member can't reach yet. For each product you want to grant, pick a product role from the dropdown - the role decides what the member can do inside that product. Leave a product set to No Access to skip it.
You can grant several products at once. Select Grant Access to apply your choices; the member immediately gains access at the roles you chose. To grant nothing, choose Cancel.
The product roles here are the same ones offered when you invite someone. Granting access later simply does the part you skipped (or that didn't exist) at invite time.
Account actions
The Account actions menu in the top-right of the detail header lists the administrative actions you can take on this member. Open it to see the available actions; each one carries a short description. Which actions appear depends on your role and theirs - see Who can do what. Possible actions include:
- Resend invite - send the invitation again. This appears only while the member is still Invited (email not yet verified).
- Promote to Admin - grant the member admin access so they can manage organization settings and members.
- Remove admin role - revoke admin access and return the person to a regular Member.
- Suspend Account - temporarily prevent the member from signing in to any of your products. You can re-enable them at any time. This is available once their email is verified.
- Enable user - restore access for a suspended member so they can sign in again.
- Delete Permanently - remove the user from your organization. They lose all access to your products and are no longer a member.
Each of these (other than resend and enable) asks you to confirm before it takes effect, with a short explanation of what the change does.
Member states
Every member is in one of three states, shown as a colored badge in the list and on their details page:
- Active - the member has verified their email and can sign in to your products.
- InActive - the member has been suspended. They can't sign in until an administrator enables them again. Use Enable user to restore access.
- Invited - the member has been invited but hasn't verified their email yet. If a person's email isn't verified, they show as Invited regardless of anything else - verification is what moves them to Active.
A member who hasn't verified their email is always shown as Invited. Once verified, they're Active unless they've been suspended, in which case they're InActive.
Who can do what
The account actions available on a member depend on the relationship between your role and theirs:
- Members can't take account actions on other users.
- Admins can act on Members, but not on other Admins or on the Owner.
- The Owner can act on anyone, including promoting a Member to Admin or removing another Admin's admin role. The Owner role itself can't be changed from here.
In short, you can only act on people at or below your own level of access, which keeps administrators from overriding one another or the Owner.
Related
- Groups - organize members into groups to manage access in bulk.
- Access control - roles, permissions, and data policies.