Overview
User Management covers six related settings screens, reached from Settings: Users, Groups, Roles, Spaces, API Keys, and (self-hosted deployments only) System. Which tabs you see depends on your organization’s plan and your permissions. Two things determine what a given user can do in the platform:- Organization Permissions (defined in Roles, assigned directly to a user in Users) — control platform/admin-level access.
- Spaces and per-space roles (assigned via Groups) — control what a user can do within a specific Space. There’s no way to assign per-space roles directly on the Users form; you do it by putting the user in a Group and assigning that Group Spaces and roles.
Users
Lists everyone in your organization: name (the organization owner is marked (Owner)), email, status (Active, Pending, or Invite Expired), assigned Spaces, Groups, Organization Permissions, and who last modified the record.- Invite User opens the add form.
- Each row’s menu offers Edit, Resend Invite (only for users who haven’t accepted yet), and Delete.
- Select multiple rows to Delete them together.
UP.Ingest Seat Assignment
To assign an UP.Ingest seats to users, users must have an ‘Active’ status. Only Platform Admins are able to assign UP.Ingest seats to users. The organization must have available seats to assign. Additional seats can be purchased as add-ons.- Select user from the ‘Users’ tab in Organizational settings.
- Select ‘Ingest User’ check box.
- Click ‘Save’.
Groups
Groups bundle users together with a shared set of Space and role assignments — this is how you give a set of people access to specific Spaces without configuring each person individually. The list shows each group’s name (the default group is marked (default)), member count, assigned Spaces, and modification history.- Create New Group opens the add form: name the group, optionally mark it as the default group new users join automatically, and pick its members.
- Under Assign Spaces & Roles, click Add Space for each Space the group should access, then choose one or more roles for that Space — every assigned Space needs at least one role.
- A row’s menu offers Edit Details, Make Default, and Delete. The default group can’t be deleted, and Make Default is disabled if the group already is the default.
Roles
Roles define Organization Permissions — platform-wide admin access levels that get assigned to users directly (not per-Space; that’s what Groups are for). Each role sets a permission level per application: typically Manage (full access), Edit or View (varies by app), or No access. Create New Role : Roles created here appear in the Organization Permissions field on the Users form.Spaces
Spaces are the containers that organize storage, users, and settings across the platform. This screen lists each Space’s name, attached storage, and user count.- Create New Space requires a name and at least one attached storage location (storage locations are configured under Settings → Storage).
- The Space named Default can’t be deleted — its row menu simply doesn’t show a Delete option.
- Creating, editing, or deleting a Space refreshes your session immediately, so newly available Spaces show up right away in switchers elsewhere in the app.
API Keys
Create and manage keys for programmatic/API access to the platform. The list shows each key’s name, status (Active/Expired), description, expiration date, admin permissions, and assigned Spaces. Create New API Key:- Name the key and optionally describe it.
- Choose Admin Permissions (organization-wide permissions the key carries).
- Set an expiration in days (1–365), or check No expiration date.
- Under Assign Spaces & App Permissions, click Add Space for each Space the key should have access to, and set its per-app permission level.
- Rotate Key generates a new secret for an existing key and lets you set a new expiration.
- Delete revokes the key immediately: “This action will revoke access for any service using this key,” and can’t be undone.
