Skip to content

User Management

This is the page where workspace users are managed by the workspace owner and admin quorum members.

The user management page allows for:

  • Viewing the list of users added to the workspace.
  • Adding new users to the workspace.
  • Deleting users.
  • Performing a 2FA reset for the users in the user list.
  • Sending a new workspace invitation email to a user whose invitation has expired.
  • Unblocking a user who was blocked after entering an incorrect password.

Adding a Web User to the Workspace

The user must fill in the following fields:

  • User’s full name.
  • User’s email address.
  • Role selection.

Adding an API User to the Workspace

The user must fill in the following fields:

  • User’s email address.
  • Role selection.

Once the user creation is complete, the user will see a key. The user must copy and save this key.


Users have the following statuses:

  • Waiting approval: The user’s request to be added to the workspace has been created. Awaits admin quorum and owner approval.
  • Approved: The user’s request to be added to the workspace has been approved by the admin quorum and the owner.
  • Rejected: The user’s request to be added to the workspace has not been approved by the admin quorum and the owner.
  • Active: The user has reached Custody via the workspace invitation link, created their password, and successfully logged in.
  • Waiting for removal: The user’s request to be deleted from the workspace has been created. The request awaits admin quorum and owner approval.
  • Deleted: The user has been deleted from the workspace.

If the user is added to the workspace as a key share owner, the creation of the key share is indicated with the following statuses:

  • Waiting for Key Sharing: The user’s key sharing is in progress.
  • Active: The user has successfully acquired the key share.

Users other than the owner can be deleted from the workspace via the platform by users with owner, associate, and admin roles.

Users can be deleted from the User Management page.

A user deletion request is created using the Delete button on the user cards. The request is fulfilled successfully when it is approved by the admin quorum and the owner.

The statuses of users that can be deleted are as follows:

  • Approved
  • Active

Deleted users will no longer be able to access the relevant workspace.


On the User Management page, user information is provided in user cards, and user-related actions are taken.

User cards provide information about the user’s role in the workspace, user status, and key shard status (if any).

User cards allow for the following actions:

  • User details: Displays the user-related groups and policy rules in the selected workspace.
  • Reset 2FA: When a user wants to reset their 2FA, the owner of the relevant workspace can reset the user’s 2FA.
  • Reset Passkey: When a user wants to reset their passkey, the owner of the relevant workspace can reset the user’s passkey.
  • Resend invitation: The workspace invitation link is resent to the user who has been added to the workspace.
  • Unblock user: A user who enters an incorrect password or 2FA five times while logging in will be blocked. The user is unblocked by the owner.
  • Reset API key: An API user’s API key can be reset by admin quorum members. The new API key is sent to the person who has performed the reset.
  • Resend derivation ceremony: Restarts an expired key derivation ceremony.
  • Delete user: The deletion process for users, excluding the workspace owner.