> For the complete documentation index, see [llms.txt](https://docs.soda.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.soda.io/organization-and-admin-settings/user-management.md).

# User management

The **Users and User Groups** in Soda Cloud settings allows you to control access to your organization by managing individual users and user groups. This ensures that team members have the appropriate permissions to use Soda Cloud effectively.

With **SSO enabled**, users and groups can be synced directly from your identity provider, reducing manual effort and ensuring alignment with your organization’s access policies. Learn more about SSO configuration [User and user group management with SSO](/organization-and-admin-settings/user-and-user-group-management-with-sso.md).

## Invite Users

{% hint style="warning" %}
Only users with the **Manage organization settings** permission on the organization can invite users. [Global and Dataset Roles](https://docs.soda.io/soda-v4/organization-and-admin-settings/global-and-dataset-roles)
{% endhint %}

The **Invite Users** feature is only available when **SSO is not enabled**.

To invite users manually:

{% stepper %}
{% step %}
Go to the **Users** tab in **Settings**.
{% endstep %}

{% step %}
Click the **+** icon at the top of the user list

<figure><img src="/files/zP47AKhV0rK7BwN1vlw1" alt=""><figcaption></figcaption></figure>
{% endstep %}

{% step %}
Enter the email addresses of the users you want to invite.

<figure><img src="/files/cbalfcEEl4nErw7OtdVH" alt="" width="469"><figcaption></figcaption></figure>
{% endstep %}
{% endstepper %}

Invited users will receive an email with a link to set their password and join your organization in Soda Cloud. Once they complete the setup, they will have access to Soda Cloud based on the roles and permissions you assign.

## Deactivate Users

{% hint style="warning" %}
Only users with the **Manage organization settings** permission on the organization can deactivate users. [Global and Dataset Roles](https://docs.soda.io/soda-v4/organization-and-admin-settings/global-and-dataset-roles)
{% endhint %}

Deactivating a user **blocks their access to Soda Cloud** and **disables any existing API keys** associated with their account. This is useful when a user no longer needs access, but you want to retain their account for record-keeping or future reactivation.

To deactivate a user:

{% stepper %}
{% step %}
Go to the **Users** tab in **Settings**.
{% endstep %}

{% step %}
Find the user you want to deactivate.
{% endstep %}

{% step %}
Click the context menu for the user and select **Deactivate From This Organization**.

<figure><img src="/files/p41uenLIHrguOwkKEvZR" alt=""><figcaption></figcaption></figure>
{% endstep %}
{% endstepper %}

You can reactivate a user later if they need access again.

## Assign User to Groups

{% hint style="warning" %}
Only users with the **Manage organization settings** permission on the organization can manage user groups. [Global and Dataset Roles](https://docs.soda.io/soda-v4/organization-and-admin-settings/global-and-dataset-roles)
{% endhint %}

Assigning users to groups allows you to manage access and permissions more efficiently by applying global roles to groups rather than individual users.

To assign users to groups:

{% stepper %}
{% step %}
Go to the **Users** tab in **Settings**.
{% endstep %}

{% step %}
Find the user you want to assign to a group.
{% endstep %}

{% step %}
Click the content menu next to their name and select **Edit User Groups**.

<figure><img src="/files/H5tl2YIlpfRxuwaFIzzf" alt=""><figcaption></figcaption></figure>
{% endstep %}

{% step %}
Select one or more user groups from the list.

<figure><img src="/files/voz2NXptyk8SgI7SDKUH" alt="" width="469"><figcaption></figcaption></figure>
{% endstep %}

{% step %}
Click **Save**
{% endstep %}
{% endstepper %}

## Assign Global Roles to Users

{% hint style="warning" %}
Only users with the **Manage organization settings** permission on the organization can assign global roles. [Global and Dataset Roles](https://docs.soda.io/soda-v4/organization-and-admin-settings/global-and-dataset-roles)
{% endhint %}

Global roles define a user’s permissions across Soda Cloud. Assigning global roles directly to users allows you to grant them specific access rights, such as managing datasets, running scans, or configuring organization settings.

To assign a global role to a user:

{% stepper %}
{% step %}
Go to the **Users** tab in **Settings**.
{% endstep %}

{% step %}
Find the user you want to assign a role to.
{% endstep %}

{% step %}
Click the context menu for the user and select **Assign Global Roles**.

<figure><img src="/files/ucxUVqdmrTIdA8W7mQzq" alt=""><figcaption></figcaption></figure>
{% endstep %}

{% step %}
Choose one or more global roles from the list.
{% endstep %}

{% step %}
Click **Save**
{% endstep %}
{% endstepper %}

## User Groups

{% hint style="warning" %}
Only users with the **Manage organization settings** permission on the organization can manage user groups. [Global and Dataset Roles](https://docs.soda.io/soda-v4/organization-and-admin-settings/global-and-dataset-roles)
{% endhint %}

User groups allow you to manage access and permissions for multiple users at once, helping you simplify and scale permission management across your organization. By assigning global roles to groups, you ensure that all members of the group have consistent access rights, without the need to assign permissions individually.

If you have Single Sign-On (SSO) enabled, user groups can also be synced automatically from your identity provider, ensuring your Soda Cloud user management aligns with your existing access policies. [Learn more about SSO integration](/organization-and-admin-settings/user-and-user-group-management-with-sso.md) .

Note that by default, there is an Everyone group which is not editable and contains all the users from the organization

### Create User Groups

You can manually create user groups in Soda Cloud, whether you’re importing user groups SSO or not.

To create a user group:

{% stepper %}
{% step %}
Go to the **User Groups** tab in **Settings**.
{% endstep %}

{% step %}
Click **Create User Group** at the top of the user group list.

<figure><img src="/files/3EzTpJX8Y8l4JmqecCGa" alt=""><figcaption></figcaption></figure>
{% endstep %}

{% step %}
Enter a **name** for the group.
{% endstep %}

{% step %}
\[Optional] **Add users** to the group immediately, or add them later.

<figure><img src="/files/cXHvEMUrj6E9KHDVvCL9" alt="" width="469"><figcaption></figcaption></figure>
{% endstep %}
{% endstepper %}

### Edit Group Members

You can edit the members of user groups that you have created on Soda Cloud.

{% hint style="warning" %}
**IDP-managed user groups cannot be edited.** You can recognize them in the **User groups** table by the flag in the **IDP-managed** column.
{% endhint %}

To edit a user group:

{% stepper %}
{% step %}
Go to the **User Groups** tab in **Settings**.
{% endstep %}

{% step %}
Find the group you want to modify.
{% endstep %}

{% step %}
Click the context menu next to the group and select **Edit Members**.

<figure><img src="/files/QuWveoeIGM15Evo3QcDK" alt=""><figcaption></figcaption></figure>
{% endstep %}

{% step %}
Select the users that should be in the user group and click **Save**.

<figure><img src="/files/JPq6FX6TsvFgoFbEWSjP" alt="" width="469"><figcaption></figcaption></figure>
{% endstep %}
{% endstepper %}

### View Group Members

You can view the list of users in a group to understand who has access through that group and to help manage permissions across your organization.

To view the members of a group:

{% stepper %}
{% step %}
Go to the **User Groups** tab in **Settings**.
{% endstep %}

{% step %}
Click the group name or the row to open its details.
{% endstep %}

{% step %}
The list of users assigned to the group will be displayed.

<figure><img src="/files/Yokdw17Zdj3fS71nVcVm" alt=""><figcaption></figcaption></figure>
{% endstep %}
{% endstepper %}

### Assign Global Roles to User Group

Global roles define a user’s permissions across Soda Cloud. Assigning global roles directly to user groups allows you to grant them specific access rights, such as managing datasets, running scans, or configuring organization settings.

To assign a global role to a user group:

{% stepper %}
{% step %}
Go to the **User Groups** tab in **Settings**.
{% endstep %}

{% step %}
Find the user group you want to assign a role to.
{% endstep %}

{% step %}
Click the context menu for the user and select **Assign Global Roles**.

<figure><img src="/files/jaRNwHdZp1U1hApE7Hob" alt=""><figcaption></figcaption></figure>
{% endstep %}

{% step %}
Choose one or more global roles from the list.
{% endstep %}

{% step %}
Click **Save**
{% endstep %}
{% endstepper %}

***

{% if visitor.claims.plan === 'datasetStandard' %}
{% hint style="success" %}
You are **logged in to Soda** and seeing the **Dataset Standard license** documentation. Learn more about [Documentation access & licensing](/reference/documentation-access-and-licensing.md).
{% endhint %}
{% endif %}

{% if visitor.claims.plan === 'enterprise' %}
{% hint style="success" %}
You are **logged in to Soda** and seeing the **Team license** documentation. Learn more about [Documentation access & licensing](/reference/documentation-access-and-licensing.md).
{% endhint %}
{% endif %}

{% if visitor.claims.plan === 'enterpriseUserBased' %}
{% hint style="success" %}
You are **logged in to Soda** and seeing the **Enterprise license** documentation. Learn more about [Documentation access & licensing](/reference/documentation-access-and-licensing.md).
{% endhint %}
{% endif %}

{% if !(visitor.claims.plan === 'enterprise' || visitor.claims.plan === 'enterpriseUserBased' || visitor.claims.plan === 'datasetStandard') %}
{% hint style="info" %}
You are **not logged in to Soda** and are viewing the default public documentation. Learn more about [Documentation access & licensing](/reference/documentation-access-and-licensing.md).

If you do have a Soda license, make sure to **log in to Soda Cloud in this same browser**.
{% endhint %}
{% endif %}


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://docs.soda.io/organization-and-admin-settings/user-management.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
