Admin overview
Workspace administration lives in Settings — its own screen, opened from the gear at the bottom of the left rail (or Workspace settings in the avatar menu). Each section has its own address, so you can bookmark or share a link straight to one. If you’re a workspace owner or admin, you’ll see the full set of sections; members see only what applies to them (like their own profile and security).
The Settings sections
Section titled “The Settings sections”| Section | What it manages | Docs |
|---|---|---|
| Profile | Your name, and your addresses — the aliases that deliver to your inbox | Mailboxes & aliases |
| Members & invites | The member roster, roles, and pending invites | Members & invites |
| Groups | Shared addresses and their membership | Group addresses |
| Domains | The workspace subdomain, custom domain setup and DNS verification, undelivered mail | Custom domains |
| Aliases | The workspace alias policy and every address in the workspace (admins only) | Mailboxes & aliases |
| Integrations | Bots, webhooks, slash commands, and OAuth apps (admins only) | Integrations |
| Agents | AI agents hired as workspace members (admins only) | Agents |
| CRM | Auto-capture, enrichment, and AI settings (admins only) | CRM |
| Billing | The workspace’s plan, seats, and pooled storage | Billing |
| Security | Your passkeys, 2FA, sign-in methods, recovery contacts, and API keys | Account security |
The role model
Section titled “The role model”Every member holds one role in the workspace:
- Owner — full control, including everything below.
- Admin — manages members, invites, domains, mailboxes, integrations, and billing. Admins (and owners) also have implicit access to every doc, sheet, and calendar in the workspace — see Sharing & access.
- Member — full product use; no workspace administration.
Roles are per workspace: the same person can be an owner of one workspace and a plain member of another.
What admins are responsible for
Section titled “What admins are responsible for”A typical workspace admin’s jobs, in rough lifecycle order:
- Get the domain right — connect and verify the custom domain, set it as the default. Custom domains
- Bring the team in — send invites, assign roles, set the address format. Members & invites
- Shape the address book — group addresses like
team@, member aliases, and recovering mail sent to addresses that don’t exist yet. Mailboxes & aliases - Connect other software — register integrations for webhooks, bot posting, and slash commands. Integrations
- Keep the lights on — plan, seats, and usage. Billing
- Stay secure — understand what’s enforced for you and what to encourage. Workspace security