Working the inbox
Members & Permissions: Roles for Team and Clients
Manage roles, guest access and per-channel permissions from Settings > Members, keeping internal staff and client guests appropriately separated.
Want to earn a Rankar Academy certificate?
This guide is free to read in full, with nothing to sign up for. Join the Academy to track your learning, complete courses and sit the certification assessment.
Join the Academy →Performance model
RankTalk · Working the inbox
Stage 1
Roles overview
Stage 2
Adding a client as a
Stage 3
Auditing access
Roles overview
Admins control workspace settings, billing and integrations. Members can create channels and use all commands. Guests are restricted to the specific channels they're invited into and cannot see the channel directory at all.
Adding a client as a guest
From a client channel's member list, click Add Guest and enter their email. Guests receive a scoped invite link that only grants access to that one channel, not the wider workspace.
Auditing access
The Members screen includes a filter for Guests, letting you periodically review who has client-level access and remove anyone no longer working on that account.
Why this matters
Effective permission management in RankTalk directly impacts the velocity and security of your SEO operations. A well-configured setup ensures that critical client data remains confidential, accessible only to authorised personnel. Conversely, poor role definition can lead to accidental data exposure, miscommunication of sensitive strategy, or even unintended modifications to campaign settings by individuals who lack the necessary context or training for a specific project, ultimately eroding client trust and potentially incurring significant rework.
Consider a scenario where an external contractor, engaged for a specific technical SEO audit, is inadvertently granted 'Editor' access across all client projects, not just their assigned one. This mistake could enable them to view confidential competitive intelligence, access private communication threads, or even alter live tracking configurations for unrelated clients. Such an oversight introduces severe compliance risks and undermines your agency's professional reputation, highlighting the critical need for granular, project-specific permission control to maintain operational integrity and data security.
Managing multi-client consultant access
When onboarding consultants or specialist contractors who work across multiple client accounts, it's crucial to establish a robust access protocol within RankTalk. Instead of granting them a broad, high-level role across your entire RankTalk instance, define specific project-level permissions that align precisely with their engagement scope. This ensures they can contribute effectively to the relevant projects without over-accessing sensitive information belonging to other clients, thereby upholding data segregation and confidentiality agreements.
The key is to leverage RankTalk's per-channel permissions after assigning a baseline 'Guest' or 'Viewer' role. For each specific client project they are involved with, grant them access to only the necessary channels (e.g., '#technical-seo-project-X', '#content-strategy-project-Y'). This prevents unnecessary visibility into administrative channels, billing discussions, or competitor research for clients they are not servicing. Regular audits of their project assignments are essential, especially as engagements conclude or scopes change.
- Assign the least privileged role (e.g., 'Viewer') as a default.
- Grant per-channel access for specific project involvement.
- Regularly review consultant access upon project completion.
- Use custom roles to encapsulate typical consultant access patterns.
Do it now
Immediately verify the role assignments and per-channel permissions for your most recently added team member or guest in RankTalk. This quick check ensures their access aligns perfectly with their operational requirements and prevents any unintended data exposure or communication gaps before they become active on a live project. Consistency in this process solidifies your security posture.
- Navigate to 'Settings' > 'Members'.
- Locate the most recently invited user.
- Click on their name to view their current role and channel access.
- Adjust any permissions that do not align with their intended scope.
Reviewing access on a schedule
Permissions drift. A freelancer joins for one sprint, a client stakeholder asks to see a single channel, a strategist moves to a different account — and six months later half your workspace can read conversations that no longer concern them. The fix is a standing review rather than a one-off audit: once a month, open Members, sort by the date each person was added, and confirm three things for every row — the role still matches what they do, the channel list still matches the projects they are on, and the account is still in use at all.
Write the outcome down in the same place you keep the rest of your operating notes, because an access review with no record is impossible to prove to a client who asks how their data is handled. Note who was removed, whose role changed, and anything you deliberately left as-is with the reason. Over a few cycles this becomes the shortest and most useful compliance document your agency owns.
- Monthly: confirm role, channel list and whether the account is still active.
- Remove departed contractors the day their engagement ends, not at review time.
- Downgrade rather than delete when someone may return — history stays intact.
- Record every change with a one-line reason so the trail is auditable.
Key takeaways
- ✓Reserve Admin for people who need workspace-level control
- ✓Add clients as channel-scoped guests, never full Members
- ✓Periodically review the Guests filter to revoke stale access
Do it now
Use slash commands, members management and inbox triage to move fast. Take it to the client thread.
