Admin quickstart
This page takes admins through setting up a workspace in a fixed order. Each step points to the detailed page. The order is chosen so that the rules are in place before the team joins.
Last checked on 28 September 2026
On this page
Before you start
An admin is whoever created the workspace or was made admin by another admin. There are exactly two roles, Admin and Member. Only admins see the Workspace section in the sidebar with Members, Usage, Billing, Models and Settings.
Changes to the settings are recorded in the activity log, so you can trace later who decided what. More on roles under Roles.
Setting up in eight steps
- 1
Set the region and models
Under Models, choose the Processing region: Switzerland, European Union, EU + Switzerland or Global (no commitment on the processing location). Models outside the region disappear everywhere. Then allow or block individual models and set the Defaults. See Processing region and Managing models. - 2
Set up data protection
Under Settings, in the Data protection section, choose the Protection level: Standard, Strict or Custom. It decides which personal data is replaced or blocked before sending. See Protecting personal data. - 3
Offer security mode
For especially sensitive conversations, go to Settings, section Security mode, first choose the Model used in security mode and then switch on Offer security mode. The model must be enabled under Models first. See Security mode. - 4
Control access
In the Access section you can Require SSO and Restrict invitations to domain. To require SSO, you must yourself be signed in with a company account from Google Workspace or Microsoft Entra. See Access and SSO. - 5
Invite members
Under Members you invite your team: one by one with Invite a teammate, or many people at once with an Invitation link. See Inviting members. - 6
Set retention
In the Retention section, enter a number of days under Delete conversations after. If the field stays empty, chats are kept until someone deletes them. See Retention. - 7
Control sharing
In the Sharing section, Allow sharing chats decides whether members may share chats, and Admins have access to every brain decides whether admins can open every brain. See Sharing chats and Brain permissions. - 8
Check the activity log
In the Activity log section, View opens the list of changes. Check that your settings are recorded there. Chat content never appears in the log. See Activity log.
Starting values of a new workspace
A newly created workspace starts with these values. Whatever you do not change stays as it is.
| Setting | Starting value | Where |
|---|---|---|
| Processing region | EU + Switzerland | Models |
| Enabled models | the chat models of the groups Frontier and Open models in the region, plus the region's image models | Models |
| Protection level | Standard | Settings, Data protection |
| Offer security mode | off | Settings, Security mode |
| Require SSO | off | Settings, Access |
| Restrict invitations to domain | empty, all addresses allowed | Settings, Access |
| Delete conversations after | empty, chats are kept | Settings, Retention |
| Allow sharing chats | on | Settings, Sharing |
| Admins have access to every brain | off | Settings, Sharing |
During the trial
All eight steps already work during the trial. Company Brain and agents stay locked until the workspace has a plan. What else the trial includes is described under Creating a workspace.
Read next
Still have a question? Write to us.
