Firm and team

Firm and team management is where you control who's on your firm and what each person (or AI agent) can do. It covers the member roster, role assignment, fine-grained permission overrides, invitations, and narrow grants of access to specific clients, books, or projects.

Every firm needs exactly one owner and at least one person who can manage it, and most firms will only ever touch roles rather than individual permissions. But the fine-grained system is there for the firm that wants precise control, like giving someone the whole Emails app but only read access to the books.

Where to find it

Two doors, same surface:

  1. Settings › Firm, the gear tile at the tail of the dock.
  2. The account dashboard behind your avatar: Firms, then the firm you want to manage.

If you operate in more than one firm, a picker at the top lets you switch which firm's roster you're looking at.

Key concepts

Roles

Every firm ships with six built-in roles plus Custom:

RoleWho it's for
OwnerFull control over the firm account. A firm has exactly one owner at a time.
AdminFull access to every feature and to firm management.
PartnerFull access to client work and bookkeeping, but can't manage the firm's team or settings.
ManagerManages client work day to day. Can't delete records, and can't manage the team or settings.
StaffDay-to-day client work: view and edit the things staff typically touch, without administrative or destructive actions.
LimitedView-only access. Suitable for interns or temporary staff.
CustomWhatever set of permissions you assign by hand.

Assigning a role fills in that role's default permissions. Toggle any single permission afterward and the member's assignment becomes Custom, without losing any of the permissions you didn't touch.

Permissions by category

Permissions are grouped into categories that mirror the app sections: Clients and CRM, AI tools, Agents, Bookkeeping, Projects, Emails, Calendar and meetings, Phone, Messages, the connected messaging bridges (Slack, Signal, Telegram), Asana, Files and documents, Signatures, Forms, Recordings, Meetings, Fireflies, Taxes, Feedback, and Administration. A category only shows in the permission grid if your firm has the corresponding app turned on, so the list you see may be shorter than this.

The table below shows what each built-in role grants, category by category. Full means every permission in that category; Manage means create and edit but not delete; View means read-only; None means no access.

CategoryOwner / AdminPartnerManagerStaffLimited
Clients & CRMFullFullManageView + manage contactsView
AI tools (chat, web search, code, database, plans)FullFullFullFullNone
AgentsFullFullFullViewNone
BookkeepingFullFullManageView + categorizeNone
ProjectsFullFullManageManage (no delete)View
EmailsFullFullFullFullView
Calendar & meetings (scheduling)FullFullFullView + edit eventsView
PhoneFullFullFullFullView
Messages (native team chat)FullFullFullView + sendView
Slack / Signal / TelegramFullFullFullView + sendNone
AsanaFullFullFullFullView
Files & documentsFullFullManageView + manageView
SignaturesFullFullManageView + manageView
FormsFullFullManageView + manageView
RecordingsFullFullFullFullView
Meetings (call capture, transcripts)FullFullFullFullView
FirefliesFullFullFullViewView
TaxesFullFullFullFullView
FeedbackFullFullFullFullFull
Administration (firm settings, team management)FullView firm onlyView firm onlyView firm onlyView firm only

Custom starts from whatever role you picked, or empty if you build one from scratch on invite, and lets you flip any individual permission from that baseline.

Invite a member

  1. On Settings › Firm, choose the firm you're inviting into (if you operate in more than one).
  2. Click Invite.
  3. Enter the person's email address, pick a starting role, and adjust individual permissions if you want something other than the role's defaults.
  4. Send the invite.

What happens next depends on whether the email belongs to an existing Bitment account:

From a pending invitation you can Resend the invite email or Revoke it to cancel.

Open a member's profile

Click any member in the roster to open their detail view: profile, the full permission grid with any overrides, resource grants, and lifecycle actions.

Grant access to specific resources

Beyond role-based permissions, you can scope a member to only certain resources of a given kind: specific clients, specific books, or specific projects.

A member with no resource grants of a kind has unrestricted access to everything of that kind their role allows. Once you add even one grant of that kind, that member is scoped to only the resources you've explicitly granted, at either view or edit level. Grant access from the member's detail view under Resource Access, or from the resource's own share control, which reaches the same grant.

Sharing vs. permissions

Most individual items in Bitment, a project, a file, a form, a signature request, a meeting, a conversation, carry their own share control, separate from firm-wide permissions. Sharing grants a specific person, or a firm's whole team, view or edit access to that one thing.

The two systems compose: firm permissions decide which apps a member can use at all, and sharing decides which specific items inside those apps they can see. Someone with Emails permission still only sees the email threads shared with them or that they own; someone without Emails permission can't open the app regardless of what's shared with them.

Firm color and branding

Each firm you operate in can carry its own workspace color, set from the account dashboard, so the shell reads differently depending on which firm's context you're working in.

Tips