UnifyIDDeveloper

Workspace administration

Teams and organizations

Separate personal application collaborators from governed organization workspaces, roles, invitations, and applications.

Ownership models

WorkspaceUseAccess boundary
Personal applicationA project owned by one developer account.Invite collaborators to that application only.
Organization workspaceAn approved company, institution, agency, or issuing body.Organization roles govern members and multiple applications.

Organization approval

  1. 1Submit legal and registration details
  2. 2UnifyID creates a restricted pending workspace
  3. 3An administrator reviews the organization and representative
  4. 4Approval activates workspace access
  5. 5Owners invite members and create applications

Pending and rejected organizations cannot manage members or organization applications. Review decisions are made in the UnifyID admin system and recorded in the audit trail.

Invitations

Invitations are bound to the recipient email, expire, and require the recipient to authenticate the matching verified UnifyID account. A six-digit email code confirms possession before access is created.

Role boundaries

Application roles are scoped to one personal application. Organization roles apply only inside one approved workspace. Owners should grant the smallest role needed and regularly remove inactive access.

A personal collaborator never receives access to your other personal applications. An organization member never receives personal application access through organization membership.

Operational checklist

Apply these controls throughout the membership lifecycle to keep privileged access attributable, recoverable, and current.

01
Protect privileged roles

Require MFA for every owner and administrator account.

02
Preserve accountability

Give each person a named account. Never share sign-in credentials.

03
Control invitations

Review pending invitations regularly and cancel any that are no longer required.

04
Maintain ownership

Keep at least one active organization owner to prevent administrative lockout.

05
Remove access promptly

Suspend or change access as soon as a person’s responsibilities change.

06
Review credentials

Reassess application credentials and rotate affected secrets after team changes.

Was this page helpful?
UnifyID Developer Documentation · Version V.1 · Updated July 2026