# Team

Source: [https://docs.aventail.co.uk/docs/fleet/team](https://docs.aventail.co.uk/docs/fleet/team)

Use **Team** to review organisation members and assign the built-in role that fits their work.

### Review members and assign built-in roles

Development Control, 2 October 2026. Rows labelled “loc.ai staff” are visible; other members’ details are obscured.

1.  **Find the member and review roles**
    
    Open Team. Use search or the role filter, confirm the intended member, then open Member actions → Change role.
    
    [Screenshot: Member table and actions — close-up from Fleet Team page.](https://docs.aventail.co.uk/img/guides/context/fleet-team.png)
    
2.  **Choose the appropriate built-in role**
    
    In Change role, choose a Premade role and review its permissions. Confirm the change only for the intended member, then verify their access.
    
    The selector was inspected without changing anyone’s permissions.
    
    [Screenshot: Premade role selector with Viewer, Fleet Manager, Fleet Admin, Super Admin and Employee descriptions.](https://docs.aventail.co.uk/img/control/fleet-2026-10-02/team-built-in-roles.png)
    

**Read the team access steps**

## Choose a built-in role

| Role | Intended access |
| --- | --- |
| Employee | Workspace only; no Fleet visibility |
| Viewer | Read Fleet dashboards, devices, configuration and rollouts; use Workspace |
| Fleet Manager | Viewer access plus device retirement, tags, device routing and rollout operation |
| Fleet Admin | Manager access plus publishing configuration, enrollment keys, routing policies and provider keys |
| Super Admin | Full organisation control, including member management |

The **Roles** section shows each role's description and permission count. Built-in roles are fixed. Keep at least one **Super Admin** in the organisation.

## Change an existing member's role

Sign in as a **Super Admin**. Use a separate test member when checking access so you keep an administrator account available.

1.  Open **Fleet operations → Team**.
2.  Find the member using **Search members** or the role filter. Check both their name and email.
3.  Open the row's **Member actions → Change role**.
4.  Select a role under **Premade roles**, review its description, then select **Change role**.
5.  Check the updated role in the member list. In the member's session, verify the intended actions are available and restricted actions remain unavailable.

Control says role changes update open sessions immediately. Do not use a successful save as the only access check; verify the member's actual experience.

**Remove from org** is a separate action in the member menu. Use **Change role** when you only need to adjust access.
