Managing Members
Last updated on August 12, 2026
Each member holds an access role and optionally belongs to one or more access groups. Member management requires Admin or Owner, and every action below lives under Settings > Members.
Invite a member
To bring someone into your organization, you send them an email invitation from the dashboard.
Open Settings > Members.
Enter the email, pick a role, and optionally select access groups.
The invitee appears in Pending marked Invited. They get an email with a sign-up link, and the link expires after seven days.
If the invitee already has a TofuPilot account in another organization, the invitation links the existing account on accept.
Accept an invitation
When you receive an invitation, you click the link in the email to join. If you have a TofuPilot account, the link adds you to the new organization on sign-in. Otherwise you complete sign-up, and the organization assignment happens once your email is verified.
Change a role
Roles update instantly, so you can promote or demote a member without asking them to sign out.
Find the member row.
Click the actions menu and select Change role.
Pick the new role and confirm. The role updates instantly, with no sign-out required.
You cannot change your own role, so another Admin or Owner has to do it.
Manage access group assignments
Access Groups scope which Stations and Runs a member can see, and a member can belong to any number of access groups.
Find the member row.
Click the actions menu and select Manage access groups.
Check and uncheck access groups, then save.
Owners, Admins, and Developers see all data regardless of access group, while Viewers and Operators are group-scoped.
Remove a member
Removing revokes the member's access to your organization without deleting data: runs, Procedures, and Units they created stay accessible and keep their creator attribution. Their API keys and MCP connections for the organization are revoked at the same time.
Find the member row.
Click the actions menu and select Remove from organization.
Confirm. Access to the organization is revoked immediately.
To restore access, send a new invitation. The user keeps their TofuPilot account and any other organizations they belong to.
Owners cannot be removed directly, so you have to transfer ownership first under Settings > Organization.
How is this guide?
Access
Learn how to manage who can sign in to your TofuPilot organization, what they can do, and how they authenticate across users, access groups, and stations.
Access Roles
Learn how the five TofuPilot access roles control what every member can read and write, and how access groups layer on top to scope visibility.