Workspaces, four server-enforced roles, threaded comments, and view analytics, so a growing library stays organized and under control.
viewer: read what has been shared with them.editor: create, capture, and edit content.admin: plus members, invites, and billing.owner: everything, and never assignable through the API.The check happens server-side on every request. A viewer who crafts the request by hand still gets refused.
Admins and owners generate an invite link with the role attached. The invitee can preview what they are joining before accepting, then signs in and lands directly in the workspace. Inviting the same person twice reuses the existing invite rather than creating a duplicate.
Team is priced per seat with a 2-seat minimum, and the rate drops as you add seats. Seat count syncs automatically as people join and leave, so you are not reconciling a spreadsheet against your invoice. Exact numbers on the pricing page.
SAML single sign-on, SCIM provisioning, and a workspace audit log do not exist today. We would rather say so than let you find out during a rollout. Where each sits is on the roadmap, and the security page lists the gaps plainly.
Enforced. Workspace roles and per-item grants are checked on the server for every request, so a user who crafts a request by hand still gets refused rather than seeing a hidden button become usable.
Not today. Sign-in is by email link, Google, or Slack. SAML single sign-on and SCIM provisioning are on the roadmap and this page changes when they ship, not before.