Skip to Content
PlatformProduction DeploymentUser ManagementOverview

User Management

Grant users access to CloudQuery Platform through the user management interface, or externally using a single sign-on identity provider.

You can grant users access at the Platform level and at the Workspace level.

At the moment, only one Workspace called default is supported. All users should be added to that Workspace.

Adding a single sign-on user

If you have configured the single sign-on integration, all configured users can log in and receive the assigned roles to the default Workspace automatically.

Adding a non-SSO user to CloudQuery Platform

To add a user, you need to have the Admin:Write role on the Platform.

Click your profile badge in the left bottom corner and select Organization settings from the popup menu.

Under Users & access, select Users.

Users page in Organization settings, listing each user with their role, status and MFA status

Click the Add user button.

Specify the name and email address, then type a password or click Generate password.

Add user to workspace dialog with fields for name, email address and password, a Limit data access toggle, and a Roles selector

For roles, select either a built-in Workspace Role, or switch on Limit data access and select a Data Access Role.

Click Add user.

The platform adds the user to the default Workspace with General:Read role. To change it, head to Changing non-SSO user’s Workspace role.

Changing non-SSO user’s Workspace role

On the Users page, scroll the table to the right and click the kebab menu button (the three dots) on the user’s row. Select Edit.

Select new roles for the user in the popup.

Programmatic access

Users can be provisioned and managed via the Platform API, which is useful for automated onboarding workflows. See the Platform API Reference (users and admin sections) for endpoint details.

Next Steps

Was this page helpful?

Last updated on