Team and access

Add teammates and grant exact workspace permissions.

Updated August 10, 2026
On this page
Before you start
  • An active merchant workspace
  • The Manage teammates and permissions grant

Team & access controls membership in one merchant workspace. Each teammate receives a role baseline plus the exact permissions saved on the membership. The merchant owner always retains full access and cannot be edited or removed.

Add or edit a teammate

Choose a role baseline

Open Team & access, choose Add teammate, and select Admin, Operations, Support, or Read only. Changing the role resets the permission checklist to that role's defaults.

Review exact permissions

Grant only the actions the teammate needs across customers, payments, vault, subscriptions, routing, disputes, reports, billing, audit, workspace settings, and user management. Read billing allows invoice and plan visibility; Manage billing also allows card, invoice-retry, plan, and cancellation actions. At least one permission is required. Grant all selects every current permission.

Save access

For a new email, Recurrify creates or reactivates the Clerk identity and membership, then gives the owner a secure sign-in URL to share. The teammate verifies their email and chooses a password in Recurrify's custom sign-in flow. Editing an existing teammate keeps the email fixed and changes the role and permission set. Removing a teammate disables that merchant membership without deleting unrelated identities or memberships.

Protected actions

  • The merchant owner's role and permissions are immutable.
  • The owner cannot be removed.
  • A teammate cannot remove their own active access.
  • Every membership change is written to Activity.
  • The users:manage permission is required to list or change the team.
  • Billing mutations require billing:manage and are unavailable during platform impersonation.