Team, RBAC & Workspace
Manage your team members, roles, permissions, workspace settings, and notifications.
- Roles and permissions — full referenceAuthoritative role × permission matrix. 7 roles from super_admin to viewer. What each can and cannot do, per workspace area.
- Organization, Workspace, Team — the 3-tier hierarchyWevion has 4 levels: Organization > Workspace > Legal Entity > Team. Each plays a different role. Personal Account belongs to many workspaces.
- Invite and manage team membersFull invitation lifecycle: send an invite (email + role), resend, revoke, accept. Pending invites consume seats; revoke frees them.
- Assign and change rolesChange a member's role from People page action menu. Effect is immediate. Audited. Roles are per-workspace.
- Transfer workspace ownershipTransfer workspace ownership to another active member. The new owner gets billing access; the old owner is demoted to mediabuyer. Password required.
- Workspace Defaults — timezone, currency, languageWorkspace Defaults set timezone, currency, language, daily digest time for the whole workspace. Individuals can override personal preferences.
- Remove or deactivate a userRemove permanently frees the seat; Deactivate locks them out but keeps the seat. Both audited. Personal accounts stay for other workspaces.
- Share ad accounts with team membersUse Teams (groups inside a workspace) to share specific ad accounts with specific users. Owners and admins always see all.
- People management page — what you can doTour of /settings/team/people: filters, bulk actions, action menu per row, CSV export, search.
- Impersonate a user (admin and owner only)Impersonate a member to debug or assist. Owner-and-above only. Every action logged with both impersonator + target IDs. Red banner during session.
- Set up two-factor authentication (2FA)Enable 2FA via authenticator app at Settings → Personal → Security. Scan QR code, verify, save backup codes.
- Generate and rotate API keysCreate API keys at Settings → Team → API Keys. Key shown once on creation. Authenticate with the x-api-key header. Grants only selected permissions.
- Read your audit logAudit log records every meaningful action: logins, role changes, impersonation, API key activity. Filter, export CSV, retain per plan.
- Security best practices for your team10-point security checklist for owners and admins: 2FA everywhere, rotate API keys, least privilege, audit log reviews, offboarding rigor.
- Notification center — staying informedClick the bell in the header to open the notification panel. Items grouped by category. 30-day history. Security events cannot be silenced.
- Customize notification preferencesCustomize Wevion notification preferences at Settings > Personal > Notifications: choose which events reach in-app, email, and Telegram.
- Personal profile and settingsManage your name, avatar, email, password, phone, language, timezone at Settings → Personal. Email changes need verification.
- Appearance, theme, and languageTheme (Light/Dark/System), language, currency, timezone, date format. Settings persist per user and sync across devices.
- Team collaboration & RBAC — complete guide7 roles, invite + manage, ownership transfer, 2FA, API keys, audit log, notification preferences. Owner / admin / manager team setup hub.
- Wavo Limits & Autonomy — guardrails for the AI copilotSet per-team WAVO guardrails in Wevion at Settings → Team → Wavo Limits: kill-switch, spend caps, approval, protected entities and undo. Owner-only.
- Agency branding & white-label reportsSet agency name, logo, brand colors and report footer at Settings → Team → Branding. Applies to Wevion reports. White-label plan, owner/admin only.
- Manage organizations & workspaces (self-serve)Create, rename and delete workspaces and rename your organization at Settings → RBAC → Organization. Owner/admin only; workspace count is plan-limited.
- Scope permission grants — roles on org, workspace or teamGrant a user a role on a specific organization, workspace, legal entity or team at Settings → RBAC → Permissions. Admin+ at that scope required.
- My Workspace — personalize your navigationPin, hide and reorder your navigation modules and hubs at Settings → Personal → My Workspace. A per-user override on top of the team defaults.