Team and access
Use the Team page to invite people and create credentials for the CLI or coding agents.
Teammates
Owners and admins can invite people, assign roles, and restrict a person to selected projects. Review access when a teammate changes teams or leaves the organization.
CLI and agent tokens
Create an organization token from Team, then choose:
- The projects the token can reach, or all projects
- Read access for reports and configuration
- Write access for apps, funnels, segments, ingestion keys, and integrations
New tokens are read-only by default. Team, billing, and insights are read-only resources. Tokens cannot delete anything.
Store a token in ONRAMP_TOKEN for CI or a coding agent. Use the CLI for command examples and the Management API for HTTP endpoints.
Keep access safe
Name tokens by their job, use the smallest project scope that works, and revoke a token when it is no longer needed. The secret is shown only when it is created.
