User Management

CloudZero allows anyone you want in your organization access to the AWS billing data you want them to see. A user of CloudZero is considered part of your organization if their email matches the original email domain that the organization was setup with.

πŸ“˜

How to have new viewers join CloudZero

You can invite people to go to https://app.cloudzero.com and create an account if you'd like them to have access to the CloudZero platform.

The CloudZero application has three roles that users can be:

  • Organizers - formerly Organizers, users with full access to all features and all data on the platform.
  • Editors - users who have read, create, and edit for non-administration features.
  • Viewers - formerly Members, users who have read-only access for non-administration features.
ViewerEditorOrganizer
ExplorerFilter & ExportFilter & ExportFilter & Export
EventsViewCreateCreate & Delete
AnalyticsView dashboards (export & schedule)Create & EditCreate & Edit
InsightsViewCreate & EditCreate, Edit & Delete
BudgetsViewViewCreate & Edit
User & API managementNo AccessNo AccessFull Access
ConnectionsNo AccessNo AccessFull Access
Cost FormationNo AccessNo AccessFull Access
ViewsNo AccessNo AccessFull Access

Viewing your organization's users

You can go to the Users menu (https://app.cloudzero.com/organization/users) to see all the users in your organization as well as their role.

πŸ“˜

User listing page

The user listing page is only accessible to Organizers.

On this page you can change a user's role or remove a user from the system.

Viewers and Editors and limiting data access

You can control which AWS accounts users have visibility into for billing data by placing users into groups on the app (https://app.cloudzero.com/manage-groups)

On this page you can create groups and put users into those groups.

By default a user has access to all accounts in your organization, using groups you can limit what account data a non-organizer user sees.

🚧

Changing default access to billing data

As mentioned above, new users in your organization default to Viewers with access to see all AWS accounts.

If you'd prefer to have new users default to having no access until an Organizer grants them access (by putting them into a group,) you can log a ticket with CloudZero and we can change that setting in your organization for you.

Note: Organizers can be added to a group, but they will never be limited to what accounts that they can see.