---
title: "User management"
slug: "user-management"
status: "update"
updated: 2025-12-15T16:38:55Z
published: 2025-12-15T16:38:55Z
canonical: "support.tulip.co/user-management"
---

> ## Documentation Index
> Fetch the complete documentation index at: https://support.tulip.co/llms.txt
> Use this file to discover all available pages before exploring further.

# User management

**In this guide, you will learn to:**
* **Manage users across an instance**
* **Assign a user to a role**
* **Determine a user’s appropriate level of access in an instance**

Because the Tulip platform has many features, it’s important to manage access across all users. Account Owners can assign each user a role, which determines the access permissions within an instance.

Before you begin assigning roles to Tulip users, you should first create a list of everyone who needs access to the instance. Define the responsibilities of each person who can access the Tulip instance or applications, including what they will and will not do.

**For example**
* Jane Doe - Build apps, manage tables and connectors, cannot approve apps
* John Smith - Approve apps, run apps, cannot build apps or access data

Once you’ve completed this list, you can assign roles based on each user’s designated responsibilities.

## Manage roles within Tulip

Tulip has several ways to manage roles between users and direct certain functionalities to specific accounts on an instance or a particular application.

Your Tulip Instance comes with default user roles. Enterprise or above plans can also create [Custom User Roles](/r230/docs/customize-user-roles). 

![Users Roles Page with Role Details](https://cdn.document360.io/7c6ff534-cad3-4fc8-9583-912c4016362f/Images/Documentation/Users%20Roles%20Page%20with%20Role%20Details.png){height="" width=""}

## Designate user roles
When determining who has what level of authority in applications, it’s important to understand what the different levels of access are. A Tulip instance has an unlimited number of users who can access it. 

With this capability, you want to restrict users to have only the lowest level of access needed to complete their tasks.

There are two main categories of access in Tulip:

### User
**Users** can access both Tulip and the Tulip Player. Capabilities include building and managing apps as well as running them in the Player. 

Roles include Account Owners, Administrators, Application Engineers, Tulip Table Supervisors, Connector Supervisors, Viewers, Station Operators, Application Approvers and Station Supervisors.

Users with the **Viewer (with Player Access)** role are allowed to register their own Players. This includes creating a single Station and Display Device during Player setup as a result.

### Operator

**Operators** can only access the Tulip Player. They strictly run apps through the Tulip Player and cannot access the App Editor or other pages regarding machine and connector information.

## User management limits

|  | Limit |
| --- | --- |
| Number of users per Instance | 10,000 |
| Number of custom user roles | 20 |
| Number of user groups | 100 |

## Further reading
* [Add Users and Managing User Roles](/r230/docs/adding-users-and-managing-user-roles)
* [Customize User Roles](/r230/docs/how-to-customize-user-roles)
* [Add Shifts and Schedules ](/r230/docs/how-to-add-shifts-and-schedules-to-your-tulip-account)
* [Update Fields on Individual Tulip Users and Operators From Apps](/r230/docs/how-to-update-fields-on-individual-tulip-users-and-operators-from-apps)
* [Add a New Operator's RFID card using an RFID Reader](/r230/docs/how-to-add-a-new-operators-rfid-card-using-an-rfid-reader)
* [Deactivate/Delete Users and Operators](/r230/docs/how-to-deactivatedelete-users-and-operators)
* [Change Editing Permissions on Individual Apps](/r230/docs/how-to-change-editing-permissions-on-individual-apps)
* [How To Set Up SAML SSO on Your Tulip Account](/r230/docs/how-to-set-up-saml-sso-on-your-tulip-account)
* [Authorization and Access Control Using SAML](/r230/docs/authorization-and-access-control-using-saml)

{{snippet.Did you find what you were looking for}}
