Members & Invitations
Invite teammates into your organization, assign roles, and manage who has access to the back office.
Members are the human users who sign in to the GreenSails dashboard, owners, administrators, and back-office staff. This is distinct from POS Operators, who are floor staff identified by a PIN on a terminal, and from Service Accounts, which are machine identities for hardware.
Members are managed under Settings → Organization → Members and require
members:view to browse. Inviting needs members:invite; removing members
needs members:remove; changing roles needs members:update-role.
Inviting a Member
Send an invitation
Enter the teammate's email and choose a base role. They receive an email with a secure acceptance link.
They accept
The invitee follows the link, creates or signs into their account, and joins your organization. Invitations require email verification.
Refine access
Once they're a member, layer on fine-grained access with groups and policies.
Base Roles
Each member has a base organization role that sets their default capabilities:
- Owner: Full control; implicit superuser that policies cannot restrict.
- Admin: Broad administrative access across the back office (everything except deleting the org and managing the billing account).
- Member: No permissions by default. Grant access with groups and policies.
Service accounts use a separate Service role with a fixed operational baseline, see Service Accounts.
Use base roles for the broad strokes and Access Control for precision, for example, a Member who should only manage menu boards at two specific locations.
Managing & Removing Members
You can adjust a member's role, manage their access, cancel a pending invitation, or remove them entirely. Removing a member immediately revokes their access and tears down their associated permission links.
Removing a member is immediate. Their sessions are invalidated and their group and policy associations are cleaned up automatically.