inveazy how-to series: Tenant Admin & users
Part 4 of the how-to series: add people in User manager, assign roles, turn modules on for the workspace, and decide who can open which apps.
Part 4 of the inveazy how-to series. How to invite your team, assign roles, and control which apps each person can open.
Series: ← Previous: Your company & public site · Next → CRM & projects
Turn modules on for the workspace. Then use roles so each person only sees what their job needs.
What you will do
Your company identity is in place (Post 3). Next, give real people access — without handing everyone TenantAdmin.
User manager
Open Admin → User manager (path /admin/users). This is the directory of people in the workspace you are signed into now. TenantAdmin and Admin can use it.
From here you can:
User manager is always scoped to your current workspace. If you run more than one workspace, switch in the header before you add people — or manage them from Tenant workspaces → that workspace → Users.
Tip: Users can sign in. CRM contacts are people you sell to or support — they often never log in. Do not mix those up when inviting staff.
Roles
Open Admin → Roles (path /admin/roles). A role is a named bundle of permissions — which hub apps someone may open, and for admin roles whether they can configure the workspace.
Built-in roles include:
Built-in roles cannot be deleted. On most workspaces you can still edit which applications they include. Add custom roles for real jobs — Warehouse, AR Clerk, Sales Rep — instead of one User role for everyone.
Applications vs roles
Access has two layers. Both must allow the app, or the person will not see it.
- Admin → Integrations → Applications — turns a module on for the whole workspace
- Roles — which enabled modules that user may open
Example: Inventory is on for the company, but a sales role excludes it. Sales will not see SCM in the menu — warehouse staff with Inventory on their role still will.
Disabled modules return 404 if someone bookmarks a URL. After you change role applications, ask affected people to refresh or sign out so menus update.
Remember: Applications = what the company bought and turned on. Roles = what each person is allowed to use.
Self-registration (optional)
For a small known team, create users directly in User manager — it is faster.
If you want people to request access, open the workspace detail under Tenant workspaces, enable self-registration, and copy the Request access link. You approve or deny each request before they can sign in. Use this for a private pilot or a public demo workspace — not as the default for every paid install.
What’s next
Continue with CRM & projects — accounts, pipeline, and delivery work in the hub.
For in-app reference anytime after you sign in, open Help from the hub.