Two layers of access
Marathoon authorizes in two layers:
- Tenant & project roles for people signed in through the UI.
- API-key permissions for automation and integrations.
Invite people
Go to Team → Invite Member, enter an email and pick a role. They receive an invitation to join your tenant.
Project roles
Access is granted per project:
- Owner — full control: member roles, deleting pipelines, archiving or deleting the project
- Maintainer — edit the project and its pipelines (create, edit, publish) and add or remove members
- Analyst — run things: submit and retry jobs, launch test runs, pair an agent
- Viewer — read-only access to pipelines, jobs, logs and results
API keys for automation
Create keys under Settings → API Keys. Each key carries a permission preset:
| Preset | Capabilities |
|---|---|
| ReadOnly | Read jobs, pipelines, projects |
| Operator | Submit / cancel / retry jobs, download artifacts |
| Admin | Full tenant access |
| Custom | Granular permissions you choose |
Keys are shown once on creation — copy immediately. Revoke without deleting to disable a key while keeping its history.