Skip to main content
A member is a person who can sign in to your organisation in Earnie. Each member holds one role, which decides what they can see and do. This page explains the three roles, how to add members, and which role can do what. Not everyone who works with Earnie needs to be a member. Developers and coding agents usually work through pull request checks, the CLI, and the API, using API keys rather than a seat in the web app. Adding members and changing roles needs the Admin role.

Three roles

Members Earnie has three roles. They separate the people who change the rules from the people who do the daily review work. The roles are built in and you can’t customise them.

Adding a member

  1. Go to Settings → Members.
  2. Select Add member.
  3. Enter the person’s Email, and choose their Role.
  4. Select Add member.
On a workspace that signs in with SSO (single sign-on) only, the new member signs in with your organisation’s existing SSO. You don’t issue a password or send an invitation email.

Giving a member a password

On a workspace that signs in with an email and password (see Workspace setup), a member you add has no password, so they can’t sign in until they choose one. Right after Add member, Earnie shows a one-time set-password link for the new member. If a member still hasn’t chosen a password later, for example because the link expired, open the row menu and select Create set-password link.
  • Earnie shows the link once. Select Copy link and send it to the member privately, for example in a direct message. The dialog stays open until you select I have copied the link, because Earnie keeps only a fingerprint of the link and can’t show it again.
  • It works once and expires after 72 hours. It also stops working as soon as you create another one for the same member, or remove the member.
  • It’s for a first password only. Once a member has a password, their row says Already has a password instead. You can’t create a link for yourself.
Anyone who holds the link can set that member’s password until it expires, so treat it like a password. Earnie records both creating and using a link in the audit log, without the link itself. On a workspace that signs in with SSO only, the action doesn’t appear.

Resetting a member’s password

Only Admins can reset a password, and only on workspaces that sign in with an email and password. When a member has forgotten theirs, or you suspect someone else has it, open the row menu and select Reset password. The item appears only for a member who already has a password, and never on your own row. To change your own password, see Changing your password. Earnie shows a one-time link, the same way it shows a set-password link. Copy it once and send it to the member privately. The member opens it, enters a new password twice, and signs in with it.
  • A reset link works once and expires after 24 hours. Creating another reset link for the same member ends the earlier one.
  • As soon as the member uses it, their old password stops working, and Earnie signs them out of every device. A device that was already signed in may keep working for up to 15 minutes more.
  • Earnie records creating and using a reset link in the audit log, without the link or the password.

Managing members

The Members page lists everyone who can sign in to the organisation, with the role each one holds. You can filter the list by email or role.
  • To change a role, pick a new role from the member’s row. You can change a role at any time, but not your own.
  • To see what a member did, choose View in audit log from the row’s actions menu.
  • To remove a member, choose Remove from organization from the row’s actions menu. You can’t remove yourself.
To compare the three roles side by side in the app, select Compare all capabilities.
Earnie hides what a role can’t do, rather than showing disabled buttons. If a control you expect isn’t there, your role doesn’t allow it.

Branding

Settings → Branding holds your organisation’s logo. Earnie prints it in the header of the HTML, Excel, and PDF snapshot reports that you render from the SBOMs page.
  • To upload a logo, drop a PNG or JPEG of up to 512 KB onto the page. Earnie saves it as soon as the upload succeeds.
  • To replace the logo, drop a new image. To remove it, select Remove logo. Without a logo, reports have no logo in the header.
A report keeps the logo it was generated with. Changing the logo affects only reports you generate afterwards, never one that already exists. Every role can see the current logo. Only an Admin can upload, replace, or remove it.

Who can do what

In this table, ✓ means the role can do it, and a dash means it can’t. Some entries are more specific:

What’s next

Pipelines and scripts don’t sign in as members. Next, set up API keys for your pipelines and scripts.