Knowella

Team, roles & carrier portal invites

Members and admins, pending invitations, and the separate door you can open for a single carrier.

5 min read Real product screens
app.knowella.com Live walkthrough
The Team page does two jobs that look similar and are not. It manages the people inside your organisation who work the queues, and it issues a different kind of login altogether: a carrier-scoped account that can see only its own documents. The filmed roster is seven people and two admins — small enough that the whole page fits on one screen, and big enough to show what an access review would catch.
In this article

The roster and its two roles

Members are listed with their email and their role. There are two roles, and the distinction is the ordinary one: admins manage the organisation — members, invitations, carrier profiles, settings — while members work documents. Roles are assigned by an admin, so nobody promotes themselves.

Read the roster by domain, not by name

The walkthrough makes a point worth stealing: sort the roster by email domain and the access picture becomes obvious. The filmed org has seven accounts across four domains — four on the customer's own domain, one vendor account, one on the shipper's domain, and one personal webmail address. Neither an external admin nor a personal address is wrong on its face. Both are exactly the kind of thing a quarterly access review exists to notice.

  • Your own domainThe default and the easy case.
  • Vendor accountsLegitimate for support — worth confirming they're still needed.
  • Partner domainsCheck the role. An external admin is a deliberate decision, not an accident.
  • Personal webmailSurvives an employee leaving. Usually the one to replace.

Invitations

The Invitations tab holds anything sent but not yet accepted. An invite that has been pending for weeks is a stale credential in waiting — the walkthrough shows two, neither with a password set yet. Revoke what nobody claimed.

Invite a carrier — a login pinned to one carrier

This is the feature that makes the page more than user admin. "Invite a carrier" issues an account scoped to a single carrier, so that carrier can sign in and see their own documents and nothing else. It turns the endless "where is my invoice up to?" email thread into a page they can check themselves.

Where the carrier list comes from

The carrier dropdown is keyed by TP- codes drawn from the TMS master list — not from KnowDoc's own Carriers page. That matters: the Carriers page holds extraction profiles for the carriers KnowDoc knows how to read, while this dropdown covers every carrier in the TMS. So you can open a portal login for a carrier whose invoices KnowDoc cannot yet parse. Useful, occasionally surprising, worth knowing before you invite.

What an access review should check

Four questions, quarterly, and the page answers all of them without leaving it: is every admin still supposed to be one, is every external account still needed, has any pending invite gone stale, and does every carrier portal login still correspond to a carrier you're actively working with.

Ready to build your own?

Start free and ship your first app in minutes — or have us set it up with you.