Security, privacy and data
Understand access to your organisation's data
Learn how organisation membership and roles control access to contracts and settings.
Last updated August 25, 2026
An organisation is the access boundary for its contracts, templates, parties, Vault files and settings. A person must be a member of the organisation to access its workspace through Scriboflow.
Organisation roles
Scriboflow currently uses three roles:
- Owner: controls organisation settings, billing, branding, roles and access.
- Admin: can invite members and manage permitted organisation access.
- Member: can work in the organisation but cannot administer its access.
Some actions remain restricted to the owner even when an admin can manage members.
Review who has access
- Open Settings and select Organisation.
- Review the people listed under Members.
- Review Pending invites for invitations that have not been accepted.
Owners can change member roles. Owners and admins can send, resend or revoke invitations and remove members where their role permits it. Removing a member ends that person's organisation access immediately, while revoking a pending invitation makes its link stop working.
Review access regularly and remove people who no longer need the organisation's contracts. See Invite your team members for invitation steps.