How it worksFeaturesPricingBlogSign in
All Plans

User Settings

User Settings is your workspace team-management hub. Invite colleagues, assign them a role, fine-tune which modules they can access, optionally restrict them to specific entities (brands/units), and review a full audit trail of every action taken in the workspace.

8 min read
Tenant Admin only
Settings → User Settings

What you'll need

Who can access
Only Tenant Admins can invite, edit, and remove users. Users with settings_users:manage permission can also access this page.
What you manage
Team members across your entire workspace — their roles, module-level permissions, and which entities (brands/units) they can access.
How invites work
New users receive an email with a secure 7-day link to set their own password. No password is set by the admin.

Roles explained

Every user in Meiver has one of three roles. The role is the top-level access tier — permissions then layer on top for the two non-admin roles.

Tenant AdminTenant Admin

Full, unrestricted access to every module, every action, and every entity in the workspace. Can invite, edit, and remove any user. Cannot be restricted by entity scope or module permissions. There can be multiple Tenant Admins in a workspace.

  • Invite and remove users
  • Change any user's role or permissions
  • Access every module without restriction
  • View the full audit log
Ops StaffOps Staff

A customisable working role. An Ops Staff member's access is fully defined by their module permissions and entity scope — they see only what you grant them.

  • Access modules explicitly granted (read/create/update/delete/export/manage)
  • Restricted to specific entities if entity scope is set
  • Can be upgraded to Tenant Admin by an existing admin
ViewerViewer

Read-only across all granted modules. A Viewer can see data but cannot create, edit, delete, or export anything. Suitable for stakeholders who need visibility without write access.

  • Read-only access to selected modules
  • Cannot create, update, delete, or export
  • Entity scope can still be applied to limit which entities they see
  • Cannot access the audit log

Invite a new user

Only Tenant Admins can invite new users. The invite flow is a two-step modal.

1

Click + Invite user

On the User Settings page, click the + Invite user button in the top-right corner. The invite modal opens.
2

Fill in the details (Step 1 of 2)

Complete the fields in the first step:

  • Email address (required) — the invite link is sent here
  • Full name (optional) — pre-fills their display name
  • Role — choose Tenant Admin, Ops Staff, or Viewer
  • Entity access — optionally restrict to specific entities (see Entity Access section)
For Tenant Admin invites, there is no permissions step — admins automatically have full access. Clicking Next goes straight to sending the invite.
3

Configure module permissions (Step 2 — Ops Staff & Viewer only)

For Ops Staff and Viewer roles a second step appears with the full permission matrix. Toggle each module on or off and choose the action level (see Configure permissions section). For Viewers, actions are automatically clamped to read-only.
4

Send the invite

Click Send invite. An email is dispatched to the address with a secure one-time link. The link is valid for 7 days. The invitee clicks the link, sets their own password, and lands directly in the dashboard.
If the invitee does not click the link within 7 days, the invite expires. Re-invite them from User Settings to generate a fresh link.

Configure module permissions

For Ops Staff and Viewer users, you control exactly what they can do inside each module using a permission matrix. The available actions per module are:

ActionWhat it allows
readView and browse data in the module
createAdd new records (batches, SKUs, documents, etc.)
updateEdit existing records
deleteDelete records
exportDownload or export data (CSV, PDF, etc.)
manageAdministrative access — e.g. invite users, configure settings
Not all actions are available on every module. For example, the reports module only has read and export. The permission matrix only shows actions that are meaningful for each module.

Viewer role auto-clamp: If a user's role is set to Viewer, any create/update/delete/export/manage toggles are automatically disabled — they can only receive read access regardless of what you toggle.

Restrict entity access

If your workspace has multiple entities (brands, business units, or product lines), you can restrict non-admin users to a specific subset. An Ops Staff or Viewer user with entity scope set will only see data that belongs to their allowed entities — batches, SKUs, documents, and settings are all filtered.

No entity scope set
The user can access all entities in the workspace. Equivalent to tenant-wide access (within their permission level).
Entity scope set
The user only sees data for the selected entities. The entity switcher at the top of their dashboard will only show the allowed entities.
1

Open the invite or edit modal

Entity access is set during the invite flow (Step 1) or when editing an existing user. In the modal, look for the Entity access section.
2

Select the entities

Check the boxes next to each entity the user should have access to. Unchecked entities are invisible to the user. At least one entity must be selected for non-admin users.
Tenant Admins always have access to all entities — entity scope has no effect on them.

Edit an existing user

You can change any user's role, module permissions, and entity access at any time. Changes take effect immediately — the user does not need to log out and back in.

1

Click the user row or the actions menu

In the members table, click on a user's row or open the ⋮ actions menu on the right and select Edit permissions. The edit modal opens with all current settings pre-filled.
2

Adjust role, entities, and permissions

  • Change the Role dropdown — switching to Tenant Admin removes the permissions step entirely
  • Update Entity access checkboxes
  • Toggle module permissions on or off in the permission matrix
Changing a user's role to Viewer automatically clamps all their existing permissions to read-only. Switching to Tenant Admin gives them full access immediately.
3

Click Save changes

Click Save changes. Permissions are updated in a single transaction and shown in the table immediately via optimistic update.

Remove a user

1

Open the actions menu on the user row

Click the ⋮ actions menu on the right of the user row and select Remove user. A confirmation dialog appears.
2

Choose whether to delete the account

The dialog shows an optional checkbox: “Also delete account if they belong to no other workspace.” If checked and the user is only in this workspace, their Meiver account is permanently deleted. Leave unchecked to only remove them from this workspace.
Account deletion is permanent and cannot be undone. If the user belongs to other workspaces, their account is preserved regardless of this checkbox.
3

Confirm removal

Click Confirm remove. The user is removed immediately and can no longer access the workspace. Their row is removed from the table.
You cannot remove:
  • Yourself (your own account)
  • The workspace owner (the first member ever created in the workspace)
  • Another Tenant Admin (unless you are also an admin)

Audit log

Below the members table, a separate Audit log card records every user-management action taken in the workspace. This gives you a tamper-evident record for compliance and security reviews.

ColumnWhat it shows
TimeDate and time the action occurred (e.g. Jun 12, 2026, 2:34 PM)
ActorName and email of the user who performed the action
ActionType of action, e.g. User invited, Role updated, User removed
ResourceWhat was changed, e.g. USER, MembershipPermission
EntityWhich entity (brand/unit) was involved, if applicable
MessageHuman-readable summary, e.g. 'Updated role=OPS_STAFF, modules=5, scope=2 entities'
IPIP address from which the action was performed
The audit log is only visible to Tenant Admins and Ops Staff. Viewer-role users cannot access it.

Module permissions reference

The following modules can be granted to Ops Staff and Viewer users. Tenant Admins always have full access to all modules.

Module keyWhat it controlsAvailable actions
overviewDashboard overviewread
catalogSKU catalogueread, create, update, delete, export
batchesBatch managementread, create, update, delete, export
stagesStage data entryread, update, manage
documentsDocument uploadsread, create, delete
qrcodesQR code managementread, create, update, delete
reportsReports & analyticsread, export
settings_usersUser Settings (this page)read, manage
settings_nutritionNutritional Settingsread, create, update, delete, export, manage
settings_billingBilling & subscriptionread, manage
settings_consumerConsumer QR page settingsread, update

Troubleshooting & FAQs

User Settings is not visible in my sidebar.+
You need either Tenant Admin role or settings_users:manage permission. Ask your Tenant Admin to grant access.
The invited user says they never received the email.+
Ask them to check their spam/junk folder. If the email is not there, go to User Settings and re-invite them — this generates a fresh 7-day link and resends the email.
The invite link has expired. What do I do?+
Invite links are valid for 7 days. Re-invite the user from User Settings to generate a new link. The old link is automatically invalidated.
I changed a user's permissions but they still see the old access level.+
Permission changes take effect immediately without requiring a logout. Ask the user to do a hard refresh (Ctrl/Cmd+Shift+R). If the issue persists, they should log out and log back in.
Can I have more than one Tenant Admin?+
Yes. You can invite as many Tenant Admins as you need. All of them have identical full access with no restrictions.
Can I remove myself from the workspace?+
No. You cannot remove your own account from User Settings. To leave a workspace, contact another Tenant Admin or reach out to Meiver support.
A user I removed still appears in the list.+
The table uses optimistic updates. If the remove failed (e.g. a network error), the row will be restored. Check for an error notification and try again.
Can I see which modules a user currently has access to without opening the edit modal?+
Not in a single glance from the table — the table shows name, email, role, and join date. Open the edit modal for a user to see their full permission matrix.
How do I change a user's password?+
Meiver does not allow admins to set or view user passwords. Users manage their own passwords via the password-reset flow. To trigger a reset, re-invite the user — they will receive a fresh password-set link.

Ready to build your team?

Invite your colleagues, assign the right roles, and keep your workspace secure.

Go to User Settings →

Was this article helpful?