Inviting and managing team members

How to invite colleagues to your DMARCER account by email, then manage their roles, permissions, passwords and access from the Users page.

Published 22 Jul 2026 0

The Users page is where you invite colleagues to your DMARCER account and decide what each of them can do. Inviting is done by email: you supply a name and address, DMARCER sends an invitation link, and the recipient sets their own password and signs up for multi-factor authentication the first time they log in. You never set anyone's password for them when you invite them, and you choose their roles and permissions once the person appears in your user list.

Who can invite and manage users

What you can do here depends on your own permissions. You will only see the Invite User button if you hold either the Add users permission or Tenant administrator (full access). To open a user, change their roles, reset a password or remove access, you need Manage user roles and permissions, or again Tenant administrator. If you cannot see these controls, ask whoever holds the Tenant administrator permission on your account to grant them to you.

How to invite someone

  • Open Users from the menu. The page header reads Users, with the subtitle Manage who can access this account, and what they can do.
  • Click Invite User at the top right of the card.
  • In the Invite User window, enter the person's Email (required), and optionally their First name and Surname.
  • Click Send invitation. DMARCER creates the account, marks it as waiting to be accepted, and emails the invitation.

The invitation link is valid for 7 days. You do not choose roles or permissions in this window; you set those once the user appears in the list below. If the address is not a valid email, or a user with that address already exists, DMARCER will let you know and the invitation will not be sent.

What happens for the person you invite

The recipient receives an email titled You've been invited to DMARCER containing a link to accept the invitation and set a password. On the Welcome to DMARCER page they confirm their email address (shown but not editable), choose a password (with a strength meter to guide them), and click Activate my account. If you did not enter their name when inviting them, they will be asked for it here. The first time they log in, they are guided through setting up multi-factor authentication, so it helps to have an authenticator app ready. Until the invitation is accepted, the account cannot log in.

Reading the user list

Each user appears as a row showing their Name, Email, Scope, Roles, Super User state, Status and Last login. The Status column is the quickest way to see where someone is up to:

  • Pending invite: the invitation has been sent but not yet accepted, so the account cannot log in yet.
  • Active: the user has accepted and can log in.
  • Must change PW: the user has been asked to set a new password the next time they log in.
  • An MFA badge next to the email shows the user has set up multi-factor authentication.
  • Scope shows Staff for ordinary account users, or Portal followed by a customer name for client portal users (see the pitfalls section below).

Setting roles and permissions

Open the Actions menu on a user's row and choose Manage roles and permissions to open the Edit user window. Here you can change the person's First name and Surname, switch Active (can sign in) on or off, assign Roles, and grant Direct permissions on top of their roles. Roles are ready-made bundles of permissions; direct permissions let you give someone a single extra ability on top of whatever their roles already provide. The permissions you can choose from include:

  • Tenant administrator (full access): grants everything, including the ability to manage other users.
  • Add users, and Remove / deactivate users.
  • Manage user roles and permissions.
  • Add domains, Remove domains, and Assign domains to customers.
  • Manage customers, Edit company details, Change subscription, and Manage payment method.

The same window has a Can make AI calls toggle. This lets that user send data to our AI features, and it is off by default. There is also an optional Reset password field: leave it blank to keep the current password, or type a new one to set it directly. If you are a Super User you will also see a Super User toggle, which is for managing across multiple accounts and is not needed for ordinary team members. Click Save to apply your changes.

Re-inviting, resetting and removing access

The Actions menu changes depending on each user's state:

  • Resend invitation: shown only for users still showing Pending invite. It sends a fresh 7-day link and switches off the previous one, so any older link the person was sent will stop working. You need to wait a short time (about two minutes) between resends.
  • Force password change at next login: asks the user to choose a new password the next time they log in. You cannot do this to your own account.
  • Reset MFA: clears the user's multi-factor setup and recovery codes so they can set it up again. You cannot reset your own MFA from here.
  • To remove access, open the user and turn off the Active (can sign in) toggle, then Save. Deactivating keeps the account on record but stops them logging in.

Common pitfalls

  • Built-in safeguards: DMARCER stops you locking yourself out. You cannot deactivate your own account, remove your own Super User access, force a password change on yourself, or reset your own MFA.
  • Invitation email did not arrive: the account is still created and waiting to be accepted even if the email fails to send. Use Resend invitation once your mail is working, and remind the recipient to check their spam and junk folders.
  • Link expired or no longer works: invitation links last 7 days, and resending replaces any earlier link. If someone reports a dead link, simply use Resend invitation.
  • Portal users are managed elsewhere: rows scoped to a customer (shown as Portal in the Scope column) are client portal accounts. The Edit user window shows a note for these and hides roles and permissions, because their access is tied to a single customer. Manage their access, passwords and removal from that customer's detail page instead.
  • Roles and permissions cannot be set during the invite: the Invite User window only collects name and email. Wait for the user to appear in the list, then use Manage roles and permissions.

Was this article useful?

Be the first to vote.
Got feedback for our team? Send us a comment

Related articles