Platform
Solutions
Services
Customers
Resources
Pricing Book a demo
Platform · Admin & roles

Govern access across your whole organization.

Role-based access, member management, and API keys in one place. Invite your team, scope every permission, and connect enterprise SSO — without leaving the dashboard.

Capabilities

Roles, permissions, and guardrails.

Role-based access

Owner, Admin, Builder, and Viewer roles scope exactly what each member can do.

Team management

Invite members by email, assign a role, and onboard them in seconds.

API key management

Generate, rotate, and monitor keys with permissions inherited from the creator.

Enterprise SSO

SAML 2.0 single sign-on and SCIM user provisioning for larger teams.

Usage & billing

Super Admins track executions, AI tokens, storage, and API calls in one place.

Observable

Authentication, integrations, and runs are logged, traceable, and auditable.

Roles & permissions

Four roles, scoped to what each person needs.

Every member gets exactly the access their work requires. Owners hold billing and can delete the workspace, Admins manage members and integrations, Builders create and run workflows, and Viewers see results without editing.

Owner — full access & billing
Admin — manage members & integrations
Builder — create & run workflows
Viewer — read-only access
Super Admin — org usage & billing
Team management

Invite your team and assign roles in seconds.

Go to Share, enter a teammate's email, pick a role, and send. Invited members receive an email with a link to join your organization — no manual provisioning, no shared credentials.

API keys

Programmatic access, governed by the same roles.

Generate an API key from the Draft & Goal Dashboard to call the API. Each key inherits the permissions of the user who created it, supports rotation and usage monitoring, and is shown only once — so save it securely the moment it's created.

Enterprise security

Sign-in that scales with your org.

SSO & OAuth

Email/password, Google and Microsoft OAuth, plus SAML 2.0 single sign-on.

SCIM provisioning

Provision and deprovision users automatically as your directory changes.

2FA & strong auth

Enable two-factor authentication and enforce strong passwords or SSO.

Quarterly reviews

Review member access on a cadence and offboard promptly when people leave.

How it works

How access gets governed.

01

Invite

Add members by email from Share and assign each one a role.

02

Scope

Roles and API key permissions control exactly what each member can access.

03

Connect SSO

Wire up SAML 2.0 and SCIM so access follows your identity provider.

04

Review

Track usage and billing, audit access, and offboard when needed.

Frequently asked questions

What teams ask before they commit.

What user roles does Draft & Goal offer?

Draft & Goal offers four roles: Owner, Admin, Builder, and Viewer. Owners hold billing and can delete the workspace, Admins manage members and integrations, Builders create and run workflows, and Viewers see results without editing. Super Admins additionally track organization-wide usage and billing, so every member gets exactly the access their work requires.

How do I add team members to a Draft & Goal organization?

Go to Share, enter a teammate's email, pick a role, and send. Invited members receive an email with a link to join your organization, with no manual provisioning and no shared credentials. Assigning Owner, Admin, Builder, or Viewer at invite time scopes their access from the first sign-in.

Does Draft & Goal support enterprise SSO?

Yes. Draft & Goal supports SAML 2.0 single sign-on and SCIM user provisioning, so access follows your identity provider and users are provisioned and deprovisioned automatically as your directory changes. Teams can also sign in with email and password or Google and Microsoft OAuth, and enable two-factor authentication.

How are API keys governed in Draft & Goal?

Each API key is generated from the Draft & Goal Dashboard and inherits the permissions of the user who created it, so programmatic access follows the same role model as human access. Keys support rotation and usage monitoring, and each key is shown only once, so it should be saved securely on creation.

Can administrators track platform usage and audit access?

Yes. Super Admins track executions, AI tokens, storage, and API calls from one dashboard, and authentication, integrations, and runs are logged, traceable, and auditable. Draft & Goal also supports a review cadence: audit member access on a quarterly basis and offboard promptly when people leave.

Get started

Show us the workflow.
We'll show you the 10x.

Bring the marketing workflow that eats your week. We'll build it live, with your data and your models, in 30 minutes.