> For the complete documentation index, see [llms.txt](https://docs.zata.ai/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.zata.ai/subusers.md).

# Subusers

Subuser Management page

The **Subuser Management** page provides a centralized view to manage all sub-accounts under your Zata.ai account. It allows account owners to create, monitor, and control access to storage resources without sharing their own login credentials.

From this section you can:

* Create a subuser with **programmatic-only** access (API/CLI keys only) or **programmatic + dashboard** access (keys plus a login to the Zata.ai web dashboard).
* Assign one or more **regions** to a subuser, each with its own independent access key pair, and add or remove regions later.
* Track a dashboard subuser's **invitation status** (Pending, Accepted, Expired, Revoked) and resend or revoke the invitation.
* **Suspend or reactivate** a subuser — for the whole account or for individual regions only.
* Grant **bucket-level access rules** (View Only, Upload Only, View & Upload, Full Access), optionally scoped to a specific folder inside a bucket.
* View each subuser's username, email, assigned regions, status, and shared buckets, and delete a subuser when it's no longer needed.

A dashboard-access subuser can sign in to their own scaled-down version of the dashboard (buckets, media preview, access keys, notifications, profile, and their granted policies) using the URL and credentials from their invitation email — see [Subuser Portal](/subusers/subuser-portal.md).

This page helps ensure secure access control by giving every subuser only the regions, buckets, and permissions they actually need.
