omnipaper

Users, roles & registration

Instance admin, workspace roles, invitations, and the registration toggle.

Two role layers: instance admin (deployment config) and workspace roles (documents). Self service sign up is off by default.

Instance admin

First registered account. Controls instance wide settings: Storage, OCR, AI, email security, and registration.

Workspace roles

CapabilityOwnerAdminMember
View documentsYesYesYes
Upload & edit documentsYesYesYes
Delete documentsYesYesNo
Manage tags, types, paths, custom propertiesYesYesRead only
Manage workflowsYesYesRead only
Saved viewsYesYesOwn views
Email ingestion accountsYesYesNo access
Invite members & manage the workspaceYesYesNo

Owner = workspace creator. Owner and admin have the same permissions today.

Inviting people

Workspace settings → Members → invite by email. Pending invites always allow sign up, even when registration is off.

Registration

Off by default. Instance admin enables it in Settings → Registration.

Always allowed: first account, and anyone with a pending invitation.

On this page