> ## Documentation Index
> Fetch the complete documentation index at: https://docs.stackone.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Groups

> Give the same roles to many people at once, and change them in one place.

A group with roles applied gives the same access to people who do the same job, such as a team or department. People who join or leave the group gain or lose that access automatically.

Groups can be managed either:

* [**Manual groups**](#manual-groups) (see below).
* **Synced from the identity provider**, through [SCIM Groups](/secure/identity-and-access/manage-team/scim/groups).

## Manual groups

These are the groups created in StackOne. Groups from the identity provider are managed there instead.

### Create a group

Only **Organization Admins** can create groups, manage their members, and delete them.

<Steps>
  <Step title="Open the Groups tab">
    Go to [**Organization > Manage Team**](https://app.stackone.com/organization/manage_team) and select the **Groups** tab.

    <Frame>
      <img src="https://mintcdn.com/stackone-60/z6bSbDsMY4CzvXKv/images/secure/identity-and-access/groups/groups-list.png?fit=max&auto=format&n=z6bSbDsMY4CzvXKv&q=85&s=076db783860f7d3430cd0c2c1160bf5f" alt="The Groups tab in Manage Team listing each group with its current member count." width="1567" height="430" data-path="images/secure/identity-and-access/groups/groups-list.png" />
    </Frame>
  </Step>

  <Step title="Name the group and add members">
    1. Click **Create group** to open the panel.
    2. Enter a **Name**, for example a department, team or function. You can rename the group later with **Edit Details**.
    3. Optionally, add **Members** from the organization. You can add more later.
    4. Click **Create group** to finish.

    <Frame>
      <img src="https://mintcdn.com/stackone-60/z6bSbDsMY4CzvXKv/images/secure/identity-and-access/groups/create-group.png?fit=max&auto=format&n=z6bSbDsMY4CzvXKv&q=85&s=90607b416b9db01d912fc0b2f18bf727" alt="The Create group side panel with a required Name field and an optional Members selector." style={{ maxWidth: "360px" }} width="896" height="1338" data-path="images/secure/identity-and-access/groups/create-group.png" />
    </Frame>
  </Step>
</Steps>

### Manage group membership

Open the group from the **Groups** tab.

<Frame>
  <img src="https://mintcdn.com/stackone-60/z6bSbDsMY4CzvXKv/images/secure/identity-and-access/groups/group-members.png?fit=max&auto=format&n=z6bSbDsMY4CzvXKv&q=85&s=2b16d58c8f3c12b3e6c3009073f5faca" alt="A group's Members tab listing its members, each with a Remove action, and an Add members button." width="1568" height="378" data-path="images/secure/identity-and-access/groups/group-members.png" />
</Frame>

* To add people, click **Add members**, select them, and confirm.
* To remove someone, click **Remove** on their row and confirm. They lose any access the group gave them.

### Delete a group

1. Open the group from the **Groups** tab and click **Delete**.
2. Type the group's name, then click **Delete** to confirm.

This can't be undone, and the group's members lose any access it gave them.

## Assign a group to a project

Assigning a group to a project needs **Organization Admin** or **Project Admin**.

Start from the project to add several groups to it at once, or from the group to add it to several projects:

<Tabs>
  <Tab title="From the project">
    <Steps>
      <Step title="Open the project's group access">
        1. Go to [**Project Settings > Access**](https://app.stackone.com/settings/members).
        2. Switch the view from **Members** to **Groups**.

        <Frame>
          <img src="https://mintcdn.com/stackone-60/z6bSbDsMY4CzvXKv/images/secure/identity-and-access/groups/project-access-groups.png?fit=max&auto=format&n=z6bSbDsMY4CzvXKv&q=85&s=140a33f630b2e544d8236e38724e69d7" alt="Project Settings > Access with the Members / Groups switch set to Groups, showing each assigned group with its role and a Revoke action." data-og-width="1568" width="1568" data-og-height="220" height="220" data-path="images/secure/identity-and-access/groups/project-access-groups.png" data-optimize="true" data-opv="3" srcset="https://mintcdn.com/stackone-60/z6bSbDsMY4CzvXKv/images/secure/identity-and-access/groups/project-access-groups.png?w=280&fit=max&auto=format&n=z6bSbDsMY4CzvXKv&q=85&s=aaa41b6b8c385e3d66d9fb4ee1c86e8f 280w, https://mintcdn.com/stackone-60/z6bSbDsMY4CzvXKv/images/secure/identity-and-access/groups/project-access-groups.png?w=560&fit=max&auto=format&n=z6bSbDsMY4CzvXKv&q=85&s=31fad2badaebfc418f5fd64b28af6704 560w, https://mintcdn.com/stackone-60/z6bSbDsMY4CzvXKv/images/secure/identity-and-access/groups/project-access-groups.png?w=840&fit=max&auto=format&n=z6bSbDsMY4CzvXKv&q=85&s=e3d1ae39ae9b3374f5128528e2daee17 840w, https://mintcdn.com/stackone-60/z6bSbDsMY4CzvXKv/images/secure/identity-and-access/groups/project-access-groups.png?w=1100&fit=max&auto=format&n=z6bSbDsMY4CzvXKv&q=85&s=63d14971989eb055e39fa6a1e587acb6 1100w, https://mintcdn.com/stackone-60/z6bSbDsMY4CzvXKv/images/secure/identity-and-access/groups/project-access-groups.png?w=1650&fit=max&auto=format&n=z6bSbDsMY4CzvXKv&q=85&s=8d5a827ac0935de671b6189e43e659d3 1650w, https://mintcdn.com/stackone-60/z6bSbDsMY4CzvXKv/images/secure/identity-and-access/groups/project-access-groups.png?w=2500&fit=max&auto=format&n=z6bSbDsMY4CzvXKv&q=85&s=62887719dbbb2181315616c20b345a7f 2500w" />
        </Frame>
      </Step>

      <Step title="Select groups and a role">
        1. Click **Add Groups**.
        2. Select one or more groups.
        3. Choose a **Role**. It defaults to **Project Member**. See [Project Roles](/secure/identity-and-access/roles-and-groups/project-roles) for what each role allows.

        <Frame>
          <img src="https://mintcdn.com/stackone-60/z6bSbDsMY4CzvXKv/images/secure/identity-and-access/groups/assign-project.png?fit=max&auto=format&n=z6bSbDsMY4CzvXKv&q=85&s=5f7b62c11ca174085059a22fb78a5432" alt="The Add Groups side panel on a project's Access view, with a Groups selector and a Role dropdown set to Project Member." style={{ maxWidth: "360px" }} width="896" height="1350" data-path="images/secure/identity-and-access/groups/assign-project.png" />
        </Frame>
      </Step>

      <Step title="Add the groups">
        Confirm the selection to add the groups. Every member of each selected group gains the chosen role on the project.
      </Step>
    </Steps>
  </Tab>

  <Tab title="From the group">
    1. Open the group and select its **Projects** tab.
    2. Click **Add project**, then select a **Project** and a **Role**. The role defaults to **Project Member**.
    3. Click **Add project** to confirm.
  </Tab>
</Tabs>

## Assign a group to an account

Before assigning a group to an account:

* You need **Account Admin** on that account.
* The group must already be assigned to the account's project. See [Assign a group to a project](#assign-a-group-to-a-project).

<Note>
  Organization Admins and Project Admins are **Account Admin** on every account by default, unless [explicit account access](/secure/identity-and-access/roles-and-groups/overview#explicit-account-access) is enabled.
</Note>

<Steps>
  <Step title="Open the account's group access">
    1. Go to [**Accounts**](https://app.stackone.com/accounts) and open the account.
    2. Select its **Access** tab.
    3. Switch the view to **Groups**.
  </Step>

  <Step title="Select groups and a role">
    1. Click **Add Groups**.
    2. Select one or more groups.
    3. Choose **Account Admin** or **Account Member**. It defaults to **Account Member**. See [Shared Accounts](/secure/identity-and-access/roles-and-groups/shared-accounts) for what each role allows.
  </Step>

  <Step title="Add the groups">
    Confirm the selection to add the groups. Every member of each selected group gains the chosen role on the account.
  </Step>
</Steps>

## Change or remove a group's access

Open the **Groups** view on the project or account, then:

* To change the group's role, pick a new role on its row.
* To remove the group's access, click **Revoke** on its row and confirm.

Access a group gets through the project isn't listed on the account. Change or revoke it on the project instead.

<Warning>
  Revoking a group from a project also revokes it from every account in that project.
</Warning>

<Note>
  To stop you locking yourself out, you can't revoke a group that is your only access to a project. **Organization Admins** can, because they always have access to every project.
</Note>


This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.