Collaborators & RBAC
DemoBites supports unlimited collaborators on all plans. Invite your team, assign roles, and control who can create, edit, and manage content across your workspaces.
Unlimited collaborators
Every plan, including Free, supports unlimited collaborators. There is no per-seat pricing and no cap on team size.
Invite via email
Send an invitation to any email address. The collaborator receives access as soon as they sign in with that address.
Workspace-scoped access
Each collaborator is assigned to a specific workspace. Access to one workspace does not grant access to others.
Roles
Every collaborator is assigned one of two roles when invited:
Admin
Full control
Admins have unrestricted access to the workspace. They can invite and remove collaborators, manage billing, configure workspace settings, and create, edit, or delete any content. Only Admins can manage other members’ permissions.
Collaborator
Permission-based access
Collaborators work within the workspace based on the permissions assigned to them. By default they get full access to everything; Admins can restrict individual sections at any time with per-section permissions.
Per-section permissions
Admins can restrict each collaborator to only the sections they need, without creating separate workspaces. Open a member’s Roles & Permissions dialog and switch from “Allow all” to “Custom” to configure each section individually.
Roles & Permissions
Sarah Chen · Collaborator
You can change these permissions at any time. Nothing is permanent.
Expert permissions
Expert is part of the Custom plan. Where it’s enabled, access is binary, a collaborator either has Manage or None. There is no intermediate “View” state.
Manage
The collaborator has full access to the Expert section and can:
- Create and configure Expert agents
- Create and manage API keys
- Configure MCP server and REST API access
- View Activity and Intelligence dashboards
None
The Expert section is not visible to the collaborator. They cannot create agents, view configurations, or generate API keys.
API keys are created immediately. When a collaborator with Manage access creates an API key, it is provisioned right away, not deferred to a Save action. The Manage permission controls who can generate keys, so assign it carefully.
Default permissions
When you invite a collaborator, the default is “Allow all”:
New collaborators
Every new collaborator starts with "Allow all", full access to every section. This keeps small teams moving without permission ceremony.
Tightening access
Switch a member to "Custom" at any time to restrict individual sections. Changes apply immediately, and nothing is permanent, you can loosen or tighten again whenever you need.
SAML & RBAC Custom
For organizations with formal access-control requirements, the Custom plan adds SAML single sign-on for your team and full role-based access control on top of the per-section permissions every plan includes. Custom is sales-led and also covers Streams, Expert, and annual contracts, contact us to talk it through.