General access
This row is the web audience alone, and it has two states.- Restricted, meaning only people with access can open it.
- Anyone with the link, a read-only link that needs no account.
A workspace admin can turn external links off for the whole workspace. When they have, the option is
visibly unavailable rather than silently missing.
Naming people
Search for a colleague and add them. The+ grants one step up from the workspace baseline, and you
change the role from the select on their row afterwards.
Roles differ by object kind. A dashboard grant can be Viewer or Editor. A chat grant is Viewer only,
since there is one writer per conversation. Guests are always Viewer, whatever the menu would otherwise
offer.
The owner sits at the top with no role menu. Ownership moves through Change owner, and only to a
named collaborator. See Dashboards for why the owner matters beyond
attribution.
Sharing with someone outside the workspace
Invite them by email from a dashboard’s Sharing pane. This is the one object kind that takes outside invitations; on a chat or a skill, typing an unknown address finds nobody. They become a guest, holding only what was explicitly shared with them, always read-only. Until they accept, their row reads PENDING, and you can resend or withdraw. A guest can be made a full member later from Settings → Members → Make member. Editing is a capability of membership, not something a guest grant can carry.What a share link exposes
A chat link does not hand over the files. Attachment chips carry the name and kind, never the bytes or
the extracted text. Inside the app it is different, since anyone who can read the thread can open its files.
See Attachments.