# Identity & Access

## Team Access

### Managing Team Members

In the **Settings > Members** module you can add or remove users from your team and change their role within the organization.

<figure><img src="https://2786867680-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LLTwFwbOqJj4dDhg8Ju%2Fuploads%2FN9fCJJE9lHs7I7V4YS4j%2Fimage.png?alt=media&#x26;token=bd866918-1203-4826-9bff-8135e074dc0d" alt=""><figcaption></figcaption></figure>

When you add a new user to your team, they will receive an activation email to activate their new Chatlayer team. Users that already have an account and belong to another Chatlayer team will be able to switch between teams by using the icon on the top right in the platform.

<figure><img src="https://2786867680-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LLTwFwbOqJj4dDhg8Ju%2Fuploads%2FBvFHOmw9BKyYCxFCMK19%2Fimage.png?alt=media&#x26;token=89f763fa-b6a4-4808-872e-c9cc7f8ec8bf" alt=""><figcaption><p>Switch teams by selecting the team from the "My Teams" menu in the profile dropdown</p></figcaption></figure>

### Team Member Roles

{% hint style="info" %}
Team roles & bot access is only available in the Enterprise pack or higher. Want to upgrade? \
[Get in touch](https://docs.chatlayer.ai/support/get-in-touch).
{% endhint %}

Chatlayer.ai has a role-based access system that allows you to restrict specific bots for specific users, and give specific rights per bot.

A user can either be an admin or a member of the team. This can be changed by pressing the pencil in the **Settings > Members** module.

<figure><img src="https://2786867680-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LLTwFwbOqJj4dDhg8Ju%2Fuploads%2FYlJFM6m0g4SwtszzW7BK%2Fimage.png?alt=media&#x26;token=7fa93d0c-df60-4bcc-97d1-237c3c1bdee4" alt=""><figcaption></figcaption></figure>

An overview of the differences between both roles:

* **Admins** have access to all bots and can create or delete team members.
* **Members** can only access OPEN bots or RESTRICTED bots to which they have access to. They cannot create or delete new team members.

## Bot access

Bots can either be set as OPEN or RESTRICTED. An OPEN bot can be accessed by all team members. RESTRICTED bots can only be accessed by Admins and approved Members.

You can configure the access to your bot while you're creating the bot:

<figure><img src="https://2786867680-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LLTwFwbOqJj4dDhg8Ju%2Fuploads%2FL5DIho98sTlOwE3bn3yZ%2Fimage.png?alt=media&#x26;token=ec2eeb65-73be-4ffa-b94f-ff122d7ba492" alt=""><figcaption></figcaption></figure>

You can change the Bot Access configuration for an existing bot by selecting "Change Access" in the **Bot > Settings > Bot Settings** module:

<figure><img src="https://2786867680-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LLTwFwbOqJj4dDhg8Ju%2Fuploads%2FZ9erYGeCRppiPiGOJQ0c%2Fimage.png?alt=media&#x26;token=cc7d8064-a1ef-4692-ae79-974238c1ce38" alt=""><figcaption></figcaption></figure>

Changing your Bot Access to RESTRICTED enables a new menu entry: **Bot > Settings > Access**. \
You can configure which team members have which access to the bot on this page.

<figure><img src="https://2786867680-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LLTwFwbOqJj4dDhg8Ju%2Fuploads%2FyMfHDj1OaMfCoc5yBtH9%2Fimage.png?alt=media&#x26;token=32676865-2324-44c8-bfe7-992fa96d44d1" alt=""><figcaption></figcaption></figure>

A member can have one of five types of permissions to a RESTRICTED bot:

* **Edit:** the member can change all intents, blocks and settings.
* **Read-only:** the member can view the bot, but cannot change anything.
* **NLP-only:** the member can change intents, expressions, entities, etc, but not blocks or settings.
* **Bot Builder:** the member can see and edit everything except for the conversation history in DRAFT and LIVE.&#x20;
* **Copywriter:** the member can see everything, but can only change the translations (the responses of the bot) in the translations window.

<figure><img src="https://2786867680-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LLTwFwbOqJj4dDhg8Ju%2Fuploads%2FsKWir612d3Eo9LofxZPb%2Fimage.png?alt=media&#x26;token=d42732b5-bb8a-4268-9950-a122a9aa2675" alt=""><figcaption></figcaption></figure>

Your access level to a bot can be seen on the "My Bots" overview page. Restricted bots will have a locked icon and, on that same line, you will be able to read your type of permission to it:

<figure><img src="https://2786867680-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LLTwFwbOqJj4dDhg8Ju%2Fuploads%2FLs3bVWBq0tUbeYgyrEeg%2Fimage.png?alt=media&#x26;token=0a9cfce3-3043-4465-a28c-683bc57934be" alt=""><figcaption></figcaption></figure>

## User Accounts

### Password Sign-In

Users can sign in to Chatlayer by using their email address and password. Users can create an account or be invited to an existing team by an administrator. In both cases, a password should be set for the user account.&#x20;

Our password policy is:

* A minimum of 8 characters
* At least one lowercase character
* At least one uppercase character
* &#x20;At least one special character

You can reset your password by pressing the "Forgot Password?" button on the sign in screen.

<figure><img src="https://2786867680-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LLTwFwbOqJj4dDhg8Ju%2Fuploads%2FwtLXLLC49pdhhRQHa7Rb%2Fimage.png?alt=media&#x26;token=e4aee594-9ec9-4587-87a3-06528658c222" alt=""><figcaption></figcaption></figure>

Our platform is protected by a brute force detection system for sign-in attempts on user accounts. We allow a maximum of **10 failed sign-in** attempts before locking out the user account from sign-in attempts. The lockout waiting period starts at 1 minute and increments by 1 minute, up to 15 minutes, every time a lockout occurs.&#x20;

Contact <support@chatlayer.ai> if you need assistance with your user account.&#x20;

### Other Sign-In methods

If you want more control over team access and user accounts and their sign-in methods we recommend setting up [SAML SSO](https://docs.chatlayer.ai/support/access-control/single-sign-on-sso-saml).&#x20;


---

# Agent Instructions: Querying This Documentation

If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter:

```
GET https://docs.chatlayer.ai/support/access-control.md?ask=<question>
```

The question should be specific, self-contained, and written in natural language.
The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
