Understanding team roles and what each permission controls
Cleanbox is built for teams. Whether you’re managing aliases with a colleague or giving a client temporary access to your mailbox setup, roles and permissions let you control exactly who can do what.
The four roles
Every team member is assigned one of four roles. The role determines their baseline level of access.
Owner
- Full access to every feature and setting
- Can manage billing and your subscription
- Can delete the team entirely
- Can transfer ownership to another team member
- Can manage API keys on the Developer page
- There must always be at least one Owner on every team
Admin
- Can invite, remove, and change the roles of other team members
- Has access to all features — aliases, mailboxes, messages, filters, shield, and more
- Cannot manage billing or delete the team
- Cannot access the Developer page
Member
- Has access to features based on individually assigned permissions
- Cannot manage other team members
- Cannot manage billing
Guest
- The most restricted role
- Has access to features based on individually assigned permissions
- Cannot manage team members or billing
- Ideal for temporary access or external collaborators
Per-feature permissions
When you invite someone as a Member or Guest, you can toggle individual permissions to control exactly which sections they can see and use. Each permission maps to a section in the sidebar:
- Aliases — view and manage aliases
- Mailboxes — view and manage mailbox connections
- Messages — view messages and quarantine
- Contacts — view and manage contacts
- Cloud — access cloud storage
- Filters — create and manage filter rules
- Shield — configure shield protection
- Domains — manage custom domains
- Relay — manage relay addresses
If a permission is turned off, that section won’t appear in the member’s sidebar at all.
Owners and Admins always have access to all features. Permissions only apply to the Member and Guest roles.
How to set roles and permissions
- Go to Team in the sidebar
- Click Invite to add a new member — choose their role and toggle the permissions you want to grant
- To change an existing member’s role or permissions, click their name in the team list
Tips for choosing the right role
- Use Admin for co-managers who need full feature access but shouldn’t handle billing
- Use Member with specific permissions for people who only need access to certain areas
- Use Guest for temporary or limited access — perfect for external collaborators or clients
You can change roles and permissions at any time, so don’t worry about getting it perfect on the first try. Start with the least access needed and expand from there.