Managing Users

Managing Users

SkySaver supports multiple users per project, allowing teams to collaborate on AWS cost optimization. This section covers how to invite users, manage permissions, and configure team access.

User Model

Users in SkySaver are:

  • Invited by email address
  • Granted granular permissions via RBAC

Viewing Users

Navigate to Tenant Management and click the Users tab to see all users in your project.

View Members View Members

ColumnDescription
EmailUser’s email address
StatusProtected (owner) or standard user
PermissionsAssigned permission scopes
Actions⋯ menu with Edit and Remove options

Adding Users

Step 1: Navigate to Add Members

Navigate to Tenant Management

Step 2: Select the Users tab

Step 3: Click Add User

Add Member Add Member

Step 4: Enter Email

  1. Enter the user’s email address
  2. Click Add User

Add New Member Add New Member

User Permissions

SkySaver uses a scope-based permission system. New users start with no permissions.See RBAC for detailed information.

Quick Permission Levels

LevelCapabilities
AdminFull access to all features
MemberView and modify specific resources
ViewerRead-only access

Assigning Permissions

  1. Click the menu on the user row and select Edit
  2. Select permissions to grant
  3. For admin access, assign the org:poweruser scope
  4. Click Save Changes

Update User Update User

Removing Users

To remove a user:

  1. Navigate to Tenant Management > Users tab
  2. Find the user you want to remove
  3. Click Remove on the users drop down menu Remove User Remove User
  4. Confirm removal

Note: Removing a user revokes their access immediately. They will no longer be able to log in to the project.

Best Practices

  1. Principle of least privilege - Grant only necessary permissions
  2. Regular audits - Review user access periodically
  3. Admin sparingly - Limit admin access to key personnel
  4. Document access - Maintain records of who has access

Troubleshooting

IssueCauseSolution
User can’t loginWrong emailVerify email matches Cognito account
No accessPermissions not setAssign scopes in Edit view
Can’t see resourcesMissing permissionsEnsure user has appropriate scopes