# Members & roles

> Workspace members, roles, invitations, and how agencies scope teammates to a single client business.

Members belong to the workspace and are granted access per business. Invite from **Settings → Members**; the invitation email creates their account and drops them into what you scoped them to.

## Roles

| Role | Can |
| --- | --- |
| Owner | Everything — billing, API keys, members, every business. |
| Admin | Manage businesses and settings, short of billing and ownership transfer. |
| Member | Work the product: inboxes, boards, workflows, campaigns in the businesses they're given. |
| Viewer | Read-only — dashboards, logs, and boards without edit rights. The role for a client who wants to watch. |

## The agency pattern

One workspace, one business per client. Scope each client's staff to their business only: they see their inbox, their board, their call logs — and nothing of any other client. Your own team spans businesses as admins. Client-facing reporting comes from each business's analytics or a [back-office schedule](/docs/backoffice/schedules).

> **GIVE CLIENTS VIEWER, NOT MEMBER:** Clients who can watch the board and the call log trust the retainer. Clients who can edit workflows generate support tickets. Upgrade individuals deliberately.
