Account & Workspace Management
Manage team member seats, role hierarchies, workspace settings, and enterprise SAML 2.0 / OIDC SSO.
3 min read4,300 viewsUpdated 2026-09-11
Inviting team members & assigning roles
Collaborate across your company by inviting team members under Settings → Team:
| Role | Operational Scope |
|---|---|
| Admin | Full authority: hire/fire agents, manage billing, configure channels, assign skill RBAC, and invite members |
| Member | Operational access: converse with agents, trigger tasks, respond to human approval gates, and upload knowledge docs |
| Viewer | Read-only access: review conversation transcripts, audit logs, and performance metrics without mutating state |
Invite flow:
Settings → Team → + Invite Member → Enter Email → Assign Role → Send Invite
Enterprise SSO setup (SAML 2.0 / OIDC)
Business and Enterprise tier organizations can configure centralized identity management via Google Workspace, Microsoft Entra ID (Azure AD), or Okta:
- Navigate to Settings → Security → Single Sign-On (SSO)
- Provide your IdP Entity ID, SSO URL, and x509 Signing Certificate
- Verify your corporate domain ownership (
@yourcompany.com) - Enforce mandatory SSO login for all employees
<!-- SAML metadata endpoint -->
https://botonom.com/saml/metadata/<workspace-slug>
When SSO is enforced, user accounts are provisioned via Just-In-Time (JIT) provisioning upon their first authenticated corporate login.
accountworkspacessoroles
Was this helpful?
More questions? Contact support
