Workspaces and Access
Hunch supports workspace-based collaboration with role-aware access controls.
What a Workspace Is
A workspace groups the assets and controls that belong together:
- Websites
- Sessions
- Handoffs
- Leads
- Analytics
- Billing context
- Settings and security controls
Each user can belong to one or more workspaces and switch between them from the dashboard.
Roles
Hunch currently supports these workspace roles:
| Role | Typical use |
|---|---|
| Owner | Billing owner and highest control for the workspace |
| Admin | Day-to-day operator with broad management permissions |
| Analyst | Read-heavy role for analytics, reporting, and review |
| Agent | Handoff and operational responder with narrower scope |
Role permissions control access to areas such as:
- Websites
- Knowledge
- Analytics
- Handoffs
- Leads
- Notifications
- Settings
- Billing
- Team management
Inviting Teammates
- Go to Team in the dashboard.
- Enter the teammate email.
- Choose a role.
- Send the invite.
The invite recipient can:
- Join with an existing Hunch account if the email already exists
- Create a new account and join the workspace from the invitation flow
Managing Members
From Team, workspace managers can:
- Review active members
- Change roles
- Resend invitations
- Revoke pending invitations
- Remove workspace members
The workspace owner cannot be removed through the normal member-management path.
Switching Workspaces
If your account belongs to multiple workspaces, use the workspace switcher in the dashboard header to move between them.
Hunch updates the active workspace context for:
- Navigation visibility
- Data queries
- Notifications
- Permissions
Access-Denied Behavior
If a user visits a dashboard route they do not have permission to access, Hunch shows a workspace access screen instead of the protected page.
Recommendations
- Give each operator their own account instead of sharing credentials.
- Use narrower roles for analysts and agents when possible.
- Review invitations and member lists regularly.
- Pair access controls with MFA and session policy.
See also: