Members and invites
A member is a person who belongs to your organization. Membership is what lets an admin give them a company mailbox, puts them in colleagues' people search, and — with the Screener trust setting on — lets their mail skip colleagues' Screeners. People become members by accepting an invite.
Inviting and managing members happens in the organization console (Mail settings → "Organization" from your company mailbox — see Getting started as a business). Owners and Admins can do everything on this page; the delegated admin roles are described in Admin roles and permissions.
Sending invites
In the console's "Invite teammates" section (or the wizard's Invite step):
- Type or paste addresses under "Email addresses" — "Paste a list or type addresses — up to 20 per send. Everyone signs in with SingleSign; no passwords to hand out." Any email address works; it only has to reach the person.
- Choose "Invite as": Member (the default), Admin or Auditor. Ownership can't be invited — an Owner promotes a member later, from the member list.
- Click "Send invites".
Each address then shows its outcome: Invited, or the reason it wasn't — already a member, already invited — resend it from the console instead, not a valid email address, that is you, no seats left on your plan, that email domain cannot be invited, or the invite email could not be sent. Failed addresses stay in the box so you can fix and resend.
On the free tier an organization can have up to 25 members; past that you'll see "Your plan includes up to 25 members — remove a member or invite fewer people." (see Plans and pricing).
What the invitee gets
An email with a personal join link. The join page — "Join Acme Inc. on SingleSign Mail" — says who invited them and the role, then "Accept invite". They sign in with their SingleSign account, or create one on the spot (free). After accepting, "You're in": they are a member, colleagues can find them in people search, and their company address is yours to give (below). The full picture from their side is in Joining an organization.
Invites also show up on singlesign.com under Account → Organizations → Pending invites, with "Accept" and "Decline" — handy when the invite went to an address already on their SingleSign account.
Pending invites
The "Pending invites" section lists every invite that hasn't been accepted, each with the role, who sent it, when, and its expiry ("Expires in 6d"). Invites expire; an expired link shows the invitee "This invite has expired".
- "Resend" nudges the same address with a fresh link and a fresh expiry. Resending the same invite too often is throttled: "That invite was resent recently — try again after 3:15 PM."
- "Revoke" → "Revoke invite" cancels it: "Their join link stops working immediately. You can always invite them again later."
The member list
"Members" shows everyone in the organization — name, company address, Role, and when they joined — with a count like "12 people". Two things happen right in the list:
- Roles — the Owner changes a member's role from the Role select (everyone else sees it as a chip). The roles are explained in Admin roles and permissions.
- "Remove" — Owners and Admins remove a member. The confirmation says exactly what it does: "They leave Acme Inc. and drop out of its people search. Their company mailbox here is suspended right away — the organization keeps it (transfer or delete it from Mailboxes); their personal mail is untouched." What happens to the mailbox next is in Company mailboxes.
An organization always keeps at least one Owner — the last one can't be removed or demoted.
Member details
Click a member (needs View member details — Owners, Admins, Auditors and the delegated admin roles) to open their details:
- Company mailbox — their mailbox in this organization: address, storage used, status, and the lifecycle actions (suspend, restore, transfer, forward, delete), or "No company address yet".
- Addresses — the mailbox's primary address and aliases, and "Give them a company address" / "Add an alias". See Company mailboxes.
- Sign-in security — how many app passwords and sessions are active on their company mailbox, with "Revoke app passwords" and "Force sign-out" for people who may reset sign-in security. "Only their Acme Inc. mailbox is affected — never their personal mail or other organizations. Phone and mail apps disconnect within seconds; web sessions end within 15 minutes. This never touches their mail." Resetting another admin is reserved for the Owner: "Only the organization owner can reset another admin".
Member details are metadata only — storage, counts, status. Nobody in the organization can read anyone's mail; see The Screener for businesses.
Giving members their company address
Accepting an invite doesn't create a mailbox by itself — an admin gives each member their address, which creates their company mailbox and tells them right away. The steps are in Company mailboxes.
When someone leaves
Removing a member ends their membership and their access to their company mailbox immediately — web, phone and app passwords. The organization keeps the mailbox with everything in it, and can restore, transfer, forward or delete it; the person's personal @singlesign.com mailbox is never touched. Membership managed on singlesign.com (the organization's page in the developer portal) ends the same way — the mail side catches up on its next refresh.
Related
Last updated: 2026-09-11
Related articles
- Help CenterFind answers about using SingleSign to sign in, manage your privacy, and secure your account.
- Joining an organization, step by stepWhat to do when a colleague invites you to their SingleSign Business organization: accepting, signing in, and getting your company address.
- Getting started as a business, step by stepSet up SingleSign Business: start an organization with a free name.singlesign.com address, get your mailbox, invite people, add your own domain any time.
- free identity providerSingleSign pricing in one line: sign-in is free, with no monthly-active-user meter. See exactly what is included, and what SingleSign Mail costs for businesses.
- Identity provider alternativesIdentity provider alternatives, by the provider you are leaving: what actually has to change in your code, and what does not.
- Auth0 comparisonSingleSign vs Auth0 compared on the difference that matters: who owns the account. A side-by-side table, then the three cases where each one is the right call.
- SingleSign vs OktaSingleSign vs Okta: Okta is built for workforce identity inside a company, SingleSign for consumer sign-in across applications.
- Firebase Auth comparisonSingleSign vs Firebase Authentication on lock-in, portability and consent, plus the cases where staying on Firebase is right.