Members and Groups
Members and groups control who can work in an organization and which back-office actions they can perform there.
Members
A user is unique across Crewlap. A member is that user connected to one organization.
If one person can work in several organizations, the system keeps one user account and creates a separate membership for each organization. The person then chooses the active organization from the back-office interface and works in that organization until they switch.
Open Management | Members to review organization members.
From the Members list you can:
filter members by key, name, email, or status;
add a member to the active organization;
open a member card;
impersonate a member when your access rights allow it.
To add a member:
Click Add.
Enter the member's email, first name, and last name.
Leave Send invitation disabled when you only need to create the membership and the user does not need a new invitation email.
Save the dialog.
The member card shows read-only details first. Use the pencil button in a section header to edit that section.
The Groups tab links the member to access groups. Add a group when the member should receive the permissions assigned to that group. Disabling a group membership keeps the row visible, but the membership is no longer active.
Member Card Dialogs
The member dialogs keep the member linked to the active organization.
Use Invite Member to Active Organization to create or link a user as a member of the active organization. The email, first name, and last name identify the person. Send invitation email controls whether Crewlap sends an invitation for this membership.
Use User Data on the member card to review the linked user details and change whether the member is enabled for the active organization.
Use Add Group to Member to choose one existing group and grant its permissions to the member. Use Member Group to enable or disable one membership row. Disabling a group membership keeps the link visible, but the group no longer contributes active permissions.
Groups
Groups collect access rights for the active organization. Use groups when several members need the same permissions.
Open Management | Groups to manage organization groups.
From the Groups list you can:
filter groups by key, name, or status;
create a group;
open a group card.
To create a group:
Click Add.
Fill the group key or leave it empty if the system can generate it.
Enter the group name and optional description.
Keep Enabled selected when the group should be usable immediately.
Save the dialog.
The group card has several sections.
General Info stores the group name, description, and enabled state.
Users lists members assigned to the group. Add a user to grant that member the group's active permissions. You can disable a single group-user membership without deleting the row.
Pool Access controls what the group can do with pools and pool-scoped data. Use the pool selector to choose organization-wide access or a specific pool scope. The Set all, Clear all, and Copy from actions help manage larger permission matrices.
The selector popup has Pool and Permissions columns. The number in Permissions is the count of saved permissions assigned directly to that exact scope. A pool row does not include permissions inherited from a parent pool or organization-wide access. The Organization-Wide row counts the saved organization-wide Pool Access permissions. Changes made with Set all, Clear all, or Copy from appear in the count only after you save the permission dialog (or reload the page after another administrator's change).
When choosing a pool scope, check the full pool path if two pools have the same short key or name. Permissions granted on a parent pool apply to its child pools, but they do not apply to a same-named pool in another branch.
Organization Administration controls administration permissions inside the active organization.
Some administrative organizations also show Global Access. These permissions affect global administration areas and should be granted only to trusted operators.
Group Card Dialogs
Use General Info to create or edit the group key, name, description, and enabled state. The key identifies the group and is normally fixed after creation.
Permission dialogs open from the Global Access, Pool Access, and Organization Administration sections. They all use the same matrix style: choose the needed checkboxes, then save the dialog.
Group Users
Use Add User to Group to select one organization member and add that member to the group. Use Group User to enable or disable one group-user membership row.
Disabling a group-user membership keeps the row visible for traceability, but the group no longer grants permissions to that member through that row.
Permission Matrix
Permission dialogs are arranged as a matrix. Rows describe business areas, and columns describe actions such as read, update, create, or delete.
Selecting a checkbox grants that action to the group. Clearing it removes the action. Save the dialog to apply the permission changes.
Use Set all and Clear all only when the whole visible permission matrix should change. Use Copy from in Pool Access when another group and pool already have a similar access setup.
Permission changes affect what members can see and do after their effective permissions are refreshed. If a member has several active groups, their permissions are combined.
Related Topics
See Pool Management for office and client pools. See Switching Organizations for choosing the active organization.