Managing Team Members
You can invite colleagues to access your Aether365 account. The person who created the account is the Owner; everyone else joins as an Admin or a Member. Admins can do everything except manage billing and the team itself; Members get read-only access.
Inviting a team member
- Navigate to Team in the sidebar (under the Settings section)
- Click Invite member
- Enter the email address and select a role
- Click Send invitation
The invited person receives an email with a link to accept the invitation. They will be asked to sign in with their Microsoft account. If they do not have an Aether365 account yet, one is created automatically.
Owners can invite Admins and Members. Admins can invite Members only - granting the Admin role is reserved for the Owner.
Microsoft account required
Team members must sign in using a Microsoft account. Aether365 uses Microsoft as its identity provider - no separate Aether365 password is needed.
Pending invitations
Until the invitation is accepted, it appears as Pending in the team table. The Owner and Admins can resend or cancel pending invitations.
The team table
The team table lists the account Owner first, followed by all current members:
| Column | Description |
|---|---|
| The member's email address | |
| Role | Owner, Admin, or Member |
| Status | Active or Pending |
| Actions | Role selector and Remove button (Owner only) |
Removing a team member
Only the Owner can remove members or change roles:
- Navigate to Team in the sidebar
- Click Remove next to the member
- Confirm removal
Removed members immediately lose access to the dashboard and API.
Roles
There are three roles in Aether365:
Owner
The person who created the account. There is exactly one Owner per account, shown at the top of the team table. The Owner can do everything, including:
- Change the plan or manage billing
- Purchase reports
- Grant the Admin role
- Change member roles and remove team members
- Delete the account
Admin
Admins can run the account day to day - everything except billing and team management:
- Invite new Members; view, resend, and revoke pending invitations
- Trigger scans and schedule scans
- Apply remediations, manage policies, and use AI Pilot
- Connect or disconnect tenants and manage connection settings
- Manage notifications, API keys, SSO, and data retention
Admins cannot grant the Admin role, change roles, remove members, manage billing, or purchase reports.
Member
Members have read-only access:
- View the dashboard, scan results, evidence, and every other monitoring surface
- View the team table
- Adjust their own personal preferences (language, theme, mobile devices) and send feedback
Members cannot trigger scans, change any account or security settings, or manage the team.
Permissions summary
| Action | Owner | Admin | Member |
|---|---|---|---|
| View scan results and dashboards | Yes | Yes | Yes |
| Trigger and schedule scans | Yes | Yes | No |
| Apply remediations, manage policies | Yes | Yes | No |
| Manage connections and settings | Yes | Yes | No |
| Manage API keys and SSO | Yes | Yes | No |
| Invite Members | Yes | Yes | No |
| Grant the Admin role | Yes | No | No |
| Change member roles | Yes | No | No |
| Remove team members | Yes | No | No |
| Manage billing and purchases | Yes | No | No |
| Delete account | Yes | No | No |
API access for team members
The Owner and Admins on plans with API access can generate API keys from API Keys in the sidebar (under the Settings section). Members cannot create or delete API keys.