# Workspace

Team and roles, billing and plan, LLM providers, audit and security.

Source: https://docs.omazy.ai/workspace/

Settings that apply to the whole company rather than to one brand.

| Surface | What it is for |
|---|---|
| **Team** | Members, roles, and what each role may do. |
| **Billing and plan** | Your plan, seats, usage and invoices. |
| **LLM providers** | Bringing your own model provider and keys. |
| **Audit** | Who did what, and when. |
| **Security** | Sign-in policy and session control. |
| **Business profile** | The company details other surfaces read from. |

## Roles

Permissions are per role, and a role is granted per member. Give people the
narrowest role that lets them do their job, and revisit it when someone changes
teams. The audit log is the record of what was actually done, and it is the
first thing worth reading when something looks wrong.

## In this section

- [Roles and permissions](/workspace/roles/) who can do what, and how narrow to go

Bringing your own model provider is covered in
[LLM Gateway](/reference/llm-gateway/).

Still to come: plan and usage, and reading the audit log.
