Skip to main content
The workspace Owner and Admins can add and manage workspace members in Settings > Members. Other members can do the same through a custom role that includes the Manage members and Manage roles and permission sets permissions. A member can belong to more than one workspace and switch between them using the workspace selector in the top-left corner.

Add Members

CONSOLE_WEB_URL must be an address invitees can reach, not localhost, as every invitation link is built from it. See CONSOLE_WEB_URL for details.
Select Add, enter one or more email addresses, choose a role, and create the invitations. Anyone who already has an active account on your Dify Enterprise platform joins the workspace right away. If your deployment has an email service configured (MAIL_TYPE), each invitee gets their invitation link by email. Without an email service, you can still invite: copy each link from Invitation Link in the confirmation that follows and share it yourself. Invitation links expire after 72 hours by default (configurable via INVITE_EXPIRY_HOURS). If someone doesn’t accept in time, invite again to get a fresh link.

Change Member Roles

A member can hold several roles at once and gets the combined permissions of all of them. See Roles and Permissions for details. Role changes take effect on the member’s next action, even if they’re currently signed in. The Owner’s role can only be changed through an ownership transfer.

Remove Members

A member’s access to the workspace is immediately revoked upon removal. The apps and knowledge bases they created stay in the workspace, with the Owner taking over as the maintainer of those resources. The Owner can’t be removed.

Transfer Ownership

Only the Owner can transfer ownership. The transfer is confirmed with a verification code emailed to the Owner. Once verified, the chosen member becomes the new Owner. The previous Owner keeps their other roles, or becomes a Restricted Member if they have none.
Because the verification code is sent by email, ownership transfer requires a configured email service (MAIL_TYPE). See Mail Configuration for details.

Troubleshooting