Managing Members
Last updated on August 14, 2026
Members of a TofuPilot organization are managed from Settings > Members. Each member holds one access role and can belong to any number of access groups.
Inviting members, changing roles, and removing members requires the Admin or Owner role.
Invite a member
Open Settings > Members.
Enter the email, pick a role, and optionally select access groups.
The invitee appears under Pending marked Invited and receives an email with a sign-up link that expires after seven days. If the invitee already has a TofuPilot account in another organization, the invitation links the existing account on accept.
Accept an invitation
Click the link in the invitation email to join. If you already have a TofuPilot account, the link adds you to the organization on sign-in. Otherwise you complete sign-up, and the membership activates once your email is verified.
Change a role
Find the member row.
Click the actions menu and select Change role.
Pick the new role and confirm.
The role applies immediately, with no sign-out required. You cannot change your own role; another Admin or Owner has to do it.
Manage access group assignments
Access groups scope which stations a member can see, and a member can belong to any number of access groups. To change a member's assignments, open the actions menu on their row and select Manage access groups. For the visibility rules and the full walkthrough, see access groups.
Remove a member
Removing a member revokes their access to your organization without deleting data: runs, procedures, and units they created stay accessible and keep their creator attribution. Their API keys and MCP connections for the organization are revoked at the same time.
Find the member row.
Click the actions menu and select Remove from organization.
Confirm.
Access is revoked immediately. To restore it, send a new invitation: the user keeps their TofuPilot account and any other organizations they belong to.
Owners cannot be removed directly. Transfer ownership first under Settings > Organization.
How is this guide?
Access Groups
Learn how to group TofuPilot stations and members into access groups so you can scope station visibility for suppliers, departments, or production lines.
Single Sign-On
Learn how to authenticate every TofuPilot member through your identity provider with SAML 2.0 or OIDC, so credentials never live on TofuPilot.