Workspaces and locations
In developmentHow a workspace keeps an organization's data separate, and how locations group work and limit access inside it.
This document describes the platform foundation under development. Details may change before launch.
Workspaces
A workspace is one organization's account in Landmate. It holds the organization's members, locations, files and settings.
- Separation. Every request is checked against the workspace of the signed-in session or API credential. The server decides which workspace a request belongs to; it never trusts a workspace identifier sent by the browser or the app.
- More than one. One person can be a member of several workspaces — for example, a property manager who works for two owners — and switch between them. Each membership has its own role.
- Ownership. Every workspace has at least one Owner. The last Owner cannot be removed or demoted, and cannot delete their own account while they are still the last Owner.
Locations
Locations group work inside a workspace. Today a location is simply a named group; later, a location can represent a portfolio, a building or a shopping plaza.
Who sees which locations
- Owners always have every location.
- Every other member has either all locations or an explicit list of locations.
- Permissions that apply to a location — viewing files, uploading files, using the assistant — are checked against that set on every request.
Owners and Managers can create and manage locations.
What is not here yet
Properties, units, residents and leases are planned. When they are built, they will live inside locations and follow the same access rules.