Users & Role Assignment

Understand how users are added, how roles are assigned, and how groups simplify access management.

i

Access in AXIO is always given to a User or Group at a specific scope with a role.
Roles decide what actions are allowed, and scope decides where.

1 Users & Membership

Users are the people who access AXIO. They become members when added to the organization.

♟+

Add Users

Invite users to your organization.

Invitation & Join

Users receive an invitation and join the organization.

♟♟

Active Members

Joined users appear in the Members list and can be assigned roles.

♟✓

User Status

Active, Inactive, or Removed users.

2 Role Assignment

Assign roles to users or groups at any scope. The role defines what they can do within that scope.

Select Principal

Choose a User or Group.

Select Scope

Choose the scope: Organization, Project, Workspace, Environment.

Select Role

Pick a role: Owner, Admin, Member, Viewer, or Unassigned.

Apply

Save the assignment. Access is granted based on role and scope.

Role Description Typical Use
Owner Full control over the organization and all settings. Used by platform owners.
Admin Manages users, roles, projects, and platform settings within scope. Used by administrators.
♟♟Member Can create and manage resources within their scope. Used by operators and developers.
Viewer Read-only access to view resources and data. Used by auditors and viewers.
Unassigned No access to any resources. Access after role assignment. Default state for new users.

3 Groups

Groups help you manage access for multiple users at the same time.

♟♟♟

Create Groups

Create groups like DevOps Team, Security Team, Auditors, etc.

Assign Roles

Assign roles to groups at the required scope. All members inherit the same access.

Benefits of Groups
  • Simplify role management for many users.
  • Ensure consistent access across teams.
  • Easier to onboard and offboard users.
  • Reduce errors and improve security.

4 Important Notes

Access is always given at a specific scope.

Roles define what actions are allowed, not where.

♟♟

Groups inherit access from the role assigned to them.

🔒

Removing a role removes access.

i

Remember: Use the least privilege role possible. Review access regularly and remove what is no longer needed.