Team
Business
The people who can reach this account, what they are allowed to do in it, and the company's authentication policy.
Inviting
An invitation produces a link shown once and usable once. Send it to the person yourself.
A member marked existing account joined the team with an account that already existed elsewhere: their password and their two-factor authentication were set outside this company, and so are not managed here.
Roles
Three system roles — administrator, member, viewer — cover most teams. A custom role is for the "exactly these permissions and nothing else" case: finance sees settlements, developers see keys, nobody shares a password.
Deleting a custom role does not remove access: the members who held it fall back to their system role.
Requiring an authenticator app
The account owner — and only the owner — can make the authenticator app mandatory for the whole team. Each member then sets it up from Security.
Removing
Removing a member takes their access away immediately. The action is recorded in Team activity, as are all the actions on this screen.
— /dashboard/team