π Role Privileges
Managing who can do what inside your workspace starts in the Privileges panel.
Where to edit privilegesβ
- Click your avatar (top-left) β Settings.
- Under Workspace, open Privileges.

Each switch enables or disables a capability for the selected role.
Permission matrix (categories)β
| Category | Granular toggles you can enable |
|---|---|
| Agent Management | Create, share, update, delete agents & configurations. |
| Knowledge Base | View, add, edit, or remove data collections. |
| Billing | Access invoices, change plans, update payment methods. |
| Member Management | Invite, remove, or change roles for workspace members. |
Default role capabilitiesβ
| Capability | Admin | Member |
|---|---|---|
| Create new agents | β | β |
| View shared workspace agents | β | β |
| View private agents & KB | β | β |
| Update & delete private agents | β | β |
| Edit knowledge-base collections | β | β |
| Configure billing | β | β |
| Invite / remove members | β | β |
Owner (workspace creator) has every privilege and can toggle Admin or Member permissions at any time.
Need more granularity? Flip the switches you see fit under Privileges β Admin / Memberβchanges apply instantly.
Workspace invite vs Agent inviteβ
Inviting someone to your workspace automatically grants them access to all agents that are shared with that workspace, based on the privileges set for their role (Admin or Member). They will also be able to view any public agents.
If you want to restrict this, you can toggle Privileges β View shared workspace agents off for that role to prevent them from seeing workspace-shared agents.
The View / Update / Delete private agents privilege allows you to override this default access by controlling who can see or modify agents that are not shared with the workspace i.e private agents.