Skip to content

Tenant Management

Administrators can manage organization settings, users, and tenant configuration.

Overview

Tenant Management is available to administrators and provides:

  • Organization information and settings
  • User management and invitations
  • Role assignments
  • MFA management
  • Tenant security settings

Accessing Tenant Management

  1. Navigate to Tenant Management in the sidebar (Admin only)
  2. View tabs:
    • Tenant Info: Organization details
    • Users: User management
    • Invites: Pending invitations

Tenant Information

Viewing Tenant Details

The Tenant Info tab shows:

  • Tenant Name: Your organization name
  • Tenant ID: Unique identifier (for API use)
  • Created At: When tenant was created

Updating Tenant Name

  1. Go to Tenant Management → Tenant Info
  2. Click Edit next to tenant name
  3. Enter new name
  4. Click Save

Tenant Settings

Configure tenant-wide settings:

  • Notification preferences
  • Email templates
  • Default tax rates
  • Currency settings
  • Invoice numbering
  • And more...

User Management

Viewing Users

The Users tab shows all users in your tenant:

  • Full name and email
  • Role (Admin, Employee, View Only)
  • Status (Active, Inactive)
  • Last login date
  • Actions available

Inviting Users

  1. Go to Tenant Management → Users
  2. Click Invite User
  3. Enter:
    • Email: User's email address
    • Role: Admin, Employee, or View Only
  4. Click Invite

The user receives an email with an invitation link.

Managing User Roles

Change a user's role:

  1. Find the user in the list
  2. Click the Role dropdown
  3. Select new role:
    • Admin: Full access
    • Employee: Operational access
    • View Only: Read-only access
  4. Role updates immediately

Deactivating Users

  1. Find the user
  2. Click Deactivate
  3. Confirm deactivation

Deactivated users:

  • Cannot log in
  • Retain access to historical data
  • Can be reactivated later

Reactivating Users

  1. Find inactive user
  2. Click Reactivate
  3. User can log in again

Resetting Passwords

  1. Find the user
  2. Click Reset Password
  3. User receives password reset email

User Invitations

Viewing Invitations

The Invites tab shows:

  • Pending invitations
  • Email addresses
  • Roles assigned
  • Invited by
  • Expiration dates

Resending Invitations

  1. Find the invitation
  2. Click Resend
  3. New email sent to user

Cancelling Invitations

  1. Find the invitation
  2. Click Cancel
  3. Invitation is removed

Multi-Factor Authentication (MFA)

Enabling MFA for Users

  1. Find the user
  2. Click Enable MFA
  3. User sets up MFA on next login

Disabling MFA

  1. Find the user
  2. Click Disable MFA
  3. MFA removed from account

Note: Users can enable/disable their own MFA in Settings.

Tenant Security

Rotating Tenant Secret

Tenant secrets are used for:

  • API authentication
  • Webhook signing
  • Secure integrations

To rotate:

  1. Go to Tenant Management → Tenant Info
  2. Click Rotate Tenant Secret
  3. Confirm rotation
  4. Important: Update all integrations with new secret

Security Best Practices

  • Regular audits: Review user access regularly
  • Principle of least privilege: Grant minimum required roles
  • MFA enforcement: Require MFA for sensitive roles
  • Monitor access: Review last login dates
  • Remove inactive users: Deactivate unused accounts

Best Practices

  • Regular user reviews: Audit user access quarterly
  • Clear role definitions: Document role responsibilities
  • Secure secrets: Rotate secrets periodically
  • Monitor invitations: Track pending invitations
  • Document changes: Keep records of user changes

Next Steps

autoch.at Documentation