Account & Security

Team Management

Add team members to your ClapPay account and control what each person can see and do.

5 min read

Invite Team Members

Add people to your team so they can help manage payments, support customers, and view reports.

  1. Go to Dashboard → Settings → Team
  2. Click Invite Member
  3. Enter their email address
  4. Choose a role (what they can do)
  5. Click Send Invite

They'll get an email with a link to join your account. The invite expires after 7 days.

Team Roles

Roles control what team members can do. Choose the role that matches their job:

RoleWhat They Can Do
AdministratorEverything. Full access to all features, settings, and data. Can add/remove team members.
DeveloperView payments, access API keys (test only), view webhooks and logs. Can't change settings or issue refunds.
AnalystView payments, reports, and analytics. Read-only access. Can't make changes.
SupportView payments, issue refunds, manage disputes. Can't access settings or API keys.
View OnlyCan only view data. No actions allowed.

Permission Details

PermissionAdminDeveloperSupportAnalyst
View payments
Issue refunds
View API keysTest only
Manage team
Change settings
View reports

Remove Team Members

When someone leaves your team, remove their access right away:

  1. Go to Settings → Team
  2. Find the person you want to remove
  3. Click the menu (three dots) next to their name
  4. Select Remove from team
  5. Confirm

They'll lose access immediately. They won't be notified, but they won't be able to log in to your account anymore.

Change Someone's Role

Need to give someone more or less access? Change their role:

  1. Go to Settings → Team
  2. Click on the team member
  3. Select a new role from the dropdown
  4. Click Save

The change takes effect right away.

Security Best Practices

  • Give least access - Only give people the permissions they actually need. Start with less access, add more if needed.
  • Limit administrators - Only trusted people should have admin access. Most team members don't need it.
  • Review access regularly - Check your team list monthly. Remove people who no longer need access.
  • Require 2FA - You can require all team members to use two-factor authentication.
  • Remove access quickly - When someone leaves your company, remove their access the same day.

Single Sign-On (SSO)

Enterprise accounts can use SSO to manage team access through your company's identity provider (like Okta, Azure AD, or Google Workspace).

With SSO:

  • Team members log in with their company credentials
  • Access is automatically removed when they leave your company
  • You can enforce password policies centrally

Contact sales to enable SSO for your account.

Activity Audit Log

See what your team has been doing:

  • Who logged in and when
  • Who issued refunds
  • Who changed settings
  • Who created or deleted API keys

View the audit log in Settings → Audit Log.

Related Articles