Team Access in NOWNodes
Overview
Team Access is a NOWNodes feature for team collaboration within a shared company workspace.
Instead of having all work tied to a single personal account and one email address, the account owner can create a team workspace, invite other users, and manage their roles.
A role defines which actions a user can perform in NOWNodes: working with API keys, viewing statistics, managing webhooks, paying invoices, editing payment details, or inviting other team members.
This approach is useful for companies where different employees are responsible for different areas:
- developers work with API keys, webhooks, and technical settings;
- finance specialists manage payments, invoices, and billing information;
- administrators manage team members and workspace settings;
- viewers get access only to the information they need to see;
- the account owner keeps full control over the workspace.
Why Team Access Is Needed
Without Team Access, the entire account effectively depends on one user. This can be inconvenient and unsafe for companies where several employees work with the service.
The Team Access feature helps solve several problems:
- Separation of responsibilities. Each member receives only the permissions they need for their work.
- Security. There is no need to share one login and password between several employees. Each user has their own account and access level.
- Convenience for the team. The owner or administrator can invite new users, change their roles, and remove them from the workspace.
- Control over critical actions. Payments, user management, API keys, and technical settings are available only to the roles that are allowed to use them.
- Scaling within a company. As the team grows, access can be granted to new members without giving them full control over the account.
Workspace
The Team Access feature works through a shared workspace. This workspace combines users, the subscription plan, API keys, statistics, payments, and other settings related to the company account.
Each workspace has an Owner. The Owner can invite users, assign roles, and manage access.
When a user registers, they have a personal workspace. If the user joins a team, they get access to the team workspace with the Viewer role.
The user can switch between available workspaces, for example between their personal workspace and the team workspace. In the personal workspace, the user remains the owner of their own account. In the team workspace, their permissions are initially limited by the Viewer role.
Availability by Subscription Plan
The Team Access feature is available only on subscription plans for business teams.
| Subscription plan | Team Access |
|---|---|
| Start | Unavailable |
| Pro | Unavailable |
| Pro Plus | Unavailable |
| Business | Available |
| Business Plus | Available |
| Enterprise | Available |
| Custom | Available |
If the user is on the Start, Pro, or Pro Plus subscription plan, they cannot use the Team Access feature or invite members to a workspace.
To use Team Access, the user needs to switch to one of the following subscription plans:
- Business
- Business Plus
- Enterprise
- Custom
Roles
The Team Access feature uses roles with predefined permissions. A role is assigned to each user in the team workspace and defines which sections and actions are available to them.
Owner
Owner is the workspace owner. This user has full access to all account features.
Owner can:
- manage API keys;
- view and use Stats Key;
- purchase and view subscription plans;
- configure and purchase dedicated servers;
- view and export statistics;
- manage webhooks;
- pay invoices and change payment details;
- invite users;
- remove users from the team;
- change user roles.
Admin
Admin is the workspace administrator. This role is suitable for users who help the owner manage the account and the team.
Admin can perform most actions available to Owner:
- manage API keys;
- work with Stats Key;
- purchase and view subscription plans;
- manage dedicated servers;
- view and export statistics;
- manage webhooks;
- work with payments;
- invite and remove users;
- change user roles.
Finance
Finance is a role for employees responsible for payments and the financial part of the account.
Finance can:
- purchase and view subscription plans;
- select and configure dedicated servers;
- purchase dedicated servers;
- delete the current node;
- view and export statistics;
- change the preferred payment method;
- pay invoices;
- edit billing information;
- edit the payment method.
Finance cannot manage API keys, Stats Key, webhooks, users, or roles.
Developer
Developer is a technical role for developers and engineers who need access to integration tools.
Developer can:
- create and deactivate API keys;
- view API keys;
- view and use Stats Key;
- select and configure dedicated servers;
- delete the current node;
- view and export statistics;
- view webhooks;
- create and edit webhooks.
Developer cannot view or purchase shared plans, pay invoices, change payment details, invite users, remove users, or change roles.
Viewer
Viewer is a read-only role. It is suitable for users who need to see general information without making changes.
Viewer can:
- view dashboard;
- view statistics;
- export statistics;
- view settings and team settings.
Viewer cannot manage API keys, webhooks, payments, dedicated servers, users, or roles.
Access Matrix
| Action | Viewer | Developer | Finance | Admin | Owner |
|---|---|---|---|---|---|
| View dashboard | Available | Available | Available | Available | Available |
| View API keys | Not available | Available | Not available | Available | Available |
| Manage API keys | Not available | Available | Not available | Available | Available |
| View shared plans | Not available | Not available | Available | Available | Available |
| Purchase shared plans | Not available | Not available | Available | Available | Available |
| View dedicated servers | Not available | Available | Available | Available | Available |
| Configure dedicated servers | Not available | Available | Available | Available | Available |
| Purchase dedicated servers | Not available | Not available | Available | Available | Available |
| Delete dedicated nodes | Not available | Available | Available | Available | Available |
| View statistics | Available | Available | Available | Available | Available |
| Export statistics | Available | Available | Available | Available | Available |
| View webhooks | Not available | Available | Not available | Available | Available |
| Manage webhooks | Not available | Available | Not available | Available | Available |
| View payments | Not available | Not available | Available | Available | Available |
| Change primary payment method | Not available | Not available | Available | Available | Available |
| Pay invoices | Not available | Not available | Available | Available | Available |
| View settings | Available | Available | Available | Available | Available |
| View personal settings | Not available | Not available | Not available | Available | Available |
| Update personal settings | Not available | Not available | Not available | Available | Available |
| View team settings | Available | Available | Available | Available | Available |
| Invite users | Not available | Not available | Not available | Available | Available |
| Remove users | Not available | Not available | Not available | Available | Available |
| Change user roles | Not available | Not available | Not available | Available | Available |
| View billing settings | Not available | Not available | Available | Available | Available |
| Manage payment cards | Not available | Not available | Available | Available | Available |
| Update billing information | Not available | Not available | Available | Available | Available |
| View password settings | Not available | Not available | Not available | Not available | Available |
| Change password | Not available | Not available | Not available | Not available | Available |
| Manage two-factor authentication | Not available | Not available | Not available | Not available | Available |
| View dedicated server data | Not available | Available | Not available | Available | Available |
| View api-key for statistics | Not available | Available | Not available | Available | Available |
| Change name of the project | Not available | Not available | Not available | Not available | Available |
Where to Manage the Team
Team management is available on the Settings page, in the Team Access tab.
In the Team Access tab, the user can view and configure the main team settings:
- Team name.
- Button or icon for editing the team name.
- Button for saving the new name.
- Button for inviting a user.
- Field for entering the user's email.
- List of users who are already in the team.
- List of users who have been invited.
- User roles.
- User management actions: changing the role or removing the user from the team.
Only users with the Owner and Admin roles have access to team management.
How to Invite a User
To invite a user to the team workspace:
- Make sure the account is on the Business, Business Plus, Enterprise, or Custom subscription plan.
- Go to the Settings page.
- Open the Team Access tab.
- Click the button for inviting a user.
- Enter the user's email.
- Send the invitation.
After the invitation is sent, the user will receive an email at the specified address. The email will include a link to join the team workspace and a short explanation of what the invitation means.
If the email was sent to the user by mistake, they can ignore the invitation.
After accepting the invitation, the user is added to the team with the Viewer role. If the user needs a different access level, Owner or Admin can change their role after they join.
What Happens After the Invitation
There are two possible scenarios after the invitation is sent.
New User
If the invited user does not yet have a NOWNodes account, they register using the link from the email and then join the team workspace.
In the team workspace, the user receives the Viewer role.
Existing User
If the invited user already has a NOWNodes account, they can accept the invitation and get access to the team workspace.
The user keeps their personal account and can switch between their personal workspace and the team workspace. In the personal workspace, the user remains the owner of their account. In the team workspace, the user initially receives the Viewer role.
How to Change a User Role
Only Owner and Admin can change user roles.
To change a role:
- Go to Settings -> Team Access.
- Find the user in the team member list.
- Open the user management menu.
- Select Change role.
- Select a new role.
After the role is changed, the user's available actions are updated according to the access matrix.
How to Remove a User from the Team
Only Owner and Admin can remove users from the team.
To remove a user:
- Go to Settings -> Team Access.
- Find the user in the team member list.
- Open the user management menu.
- Select Remove from team.
- Confirm removal.
After removal, the user loses access to the team workspace.
If the user had a personal account, they return to their personal workspace, where they remain the owner. Team role restrictions no longer apply because the user is no longer in the team.
What the Invited User Sees
The invited user receives an email with a link to join the team.
After accepting the invitation, the user gets access to the team workspace with the Viewer role. If Owner or Admin later changes the user's role, the available sections and actions are updated according to the new role.
For example:
- a user with the Developer role can work with API keys, Stats Key, webhooks, and statistics, but cannot pay invoices or manage users;
- a user with the Finance role can work with subscription plans, payments, and billing information, but cannot manage API keys or webhooks;
- a user with the Viewer role can view allowed data but cannot change settings.
Key Rules
- The Team Access feature is available only on the Business, Business Plus, Enterprise, and Custom subscription plans.
- Start, Pro, and Pro Plus do not support the Team Access feature.
- Only Owner and Admin can invite users.
- Invited users are added to the team with the Viewer role.
- Only Owner and Admin can change user roles.
- Only Owner and Admin can remove users from the team.
- Financial actions are available to Owner, Admin, and Finance.
- Technical actions are available to Owner, Admin, and Developer.
- Viewer has read-only access to allowed sections.
- A user can have a personal workspace and access to a team workspace at the same time.