Organizations & Tenancy
AVAILABLEIn Naagmani, the Organization represents the highest-level entity in the tenant hierarchy. It serves as the administrative, billing, and governance container for an enterprise or development team.
Rendering diagram...
graph TD
Org["Organization (Acme Corp)"]
Org --> P1["Project: E-Commerce Search"]
Org --> P2["Project: Internal Copilot"]
Org --> PortalUsers["Portal Users (Human RBAC)"]
Org --> Roles["Dynamic Organization Roles & Permissions"]
Org --> CustomerMembers["Customer Members (Attribution & Budgets)"]
Org --> Bgt["Organization Budget Cap"]
Org --> Vault["BYOK Encrypted Credential Vault"]
Key Responsibilities of an Organization #
- Billing & Budget Authority: Governs the root spending limit for all underlying projects and customer members. Project and Customer Member limits can never exceed the Organization's limit.
- Team & Portal User Access: Manage Developer Portal logins, dynamic role assignments, and organization memberships:
- System Roles: Predefined
Owner,Admin, andMemberplatform roles. - Custom Roles: Tailored roles (e.g.
Project Operator,Billing Manager) composed of granular canonical permissions.
- System Roles: Predefined
- Customer / Application Directory: Manage end-user and application member identities for token usage attribution and individual spending limits.
- Bring-Your-Own-Key (BYOK) Vault: Store root provider API keys (OpenAI, Anthropic, Gemini, DeepSeek) centrally with AES-256-GCM encryption.
- Audit Trail: Aggregated compliance logging capturing every authentication event, key creation, role modification, and high-level routing operation.
Managing in the Developer Portal #
Organizations can be managed directly in the Developer Portal:
- Switch Organizations: Use the top-left Organization dropdown selector in the navigation bar.
- Organization Settings: Navigate to http://localhost:3000/organizations to update organization name and view subscription tier.
- Portal Users: Manage team access and roles at http://localhost:3000/users.
- Roles & Permissions: Create and configure custom organization roles at http://localhost:3000/roles.
- Customer Members: Manage customer attribution and spending caps at http://localhost:3000/members.
Next Steps #
- Learn about project boundaries: Projects & Workloads
- Manage portal team members: Portal Users
- Configure custom roles: Roles & Permissions
- Manage customer spending caps: Customer Members Directory