Skip to main content
Skip to main content

Team Management

A Team plan turns your account into a shared workspace: one subscription, per-seat licenses and AI credits, five built-in roles, and analytics across everyone's scans.

Create your team

  1. Subscribe to a Team plan (2-seat minimum) from the pricing page.
  2. Open Dashboard โ†’ Team and name your team โ€” you become its OWNER.
  3. Each seat includes its own license key and 10,000 AI credits per month.

Invite members

Invite by email from the Team page. Invitees get a signup link, verify their email address, and are attached to the team with the role you chose. Until they accept, the seat shows as pending and its license stays unassigned.

Each member activates their own license key locally (see Licensing & Activation) โ€” credits are metered per seat, so one teammate's heavy Sonnet usage never eats another's allowance.

The five built-in roles

OWNER

Created the team. Full control: billing, seats, roles, and team deletion. Exactly one per team.

ADMIN

Manage members and licenses โ€” invite, remove, and change roles (except the owner).

MEMBER

Holds a seat and a license; runs scans and uses AI credits. The default role for invitees.

BILLING_ADMIN

Manages the subscription and payment details without access to member management.

USAGE_VIEWER

Read-only access to team analytics and usage โ€” useful for engineering managers and FinOps.

Team analytics

The Analytics dashboard gains a Team tab: scans, issues found, and credit usage across every seat, plus scheduled email reports. Team scan history is retained for 365 days.

Members see their own runs; the team view aggregates across all seats.

Enforce a shared baseline

Commit a .cdk-insights.json and a baseline file to each repo so every seat scans with the same rules, suppressions, and diff baseline.

Read the Diff Mode docs