• Formerly Platform.sh
  • Contact us
  • Docs
  • Login
Watch a demoFree trial

Control access to applications without slowing teams down

Team and access management on Upsun provide centralized control over who can access projects, environments, and platform capabilities. Permissions are defined by environment type and enforced at the platform level.

What this enables

Team and Access Management on Upsun allow teams to:

  • Manage user access centrally across projects and environments
  • Enforce least-privilege access without custom tooling
  • Adapt permissions quickly as teams and responsibilities change
  • Onboard new developers quickly by managing their access from a centralized location

How it works

Role-based access control

Upsun uses role-based access control to define what users can do within projects and environments. Roles determine permissions for actions such as deployments, configuration changes, backups, and environment management. Roles can be adjusted at any time to reflect evolving responsibilities.

Centralized user management

Users are managed at the organization and project levels in the Console and CLI. Adding a user to a project invites them to the organization automatically, and you can view and adjust their roles centrally. This simplifies access management across multiple applications and teams.

Secure access mechanisms

Enforce single sign-on for your domain and use API tokens for automation with the CLI, so teams avoid shared credentials. Access-related activities are logged and viewable in the Console or CLI.

What problems this solves

Permission sprawl

As teams grow, access rights often become inconsistent. Centralized management prevents over-permissioning and reduces security risk.

Manual onboarding and offboarding

Manually configuring access across systems is time-consuming and error-prone. Upsun simplifies these workflows through a single control plane.

Limited visibility

Without a central view, it is difficult to know who has access to what. Upsun provides clear visibility into user permissions.

Key capabilities

  • Role-based access control across projects and environments
  • Organization-level user management
  • Secure, managed access to application environments
  • Centralized permission updates and revocation
  • Auditable access changes
  • Access management via console, CLI, and API

Enterprise considerations

Governance and compliance

Access controls support internal policies and external audit requirements by enforcing consistent permission models.

Security

Least-privilege access reduces the attack surface and limits the impact of compromised credentials.

Operational efficiency

Platform teams can manage access at scale without maintaining separate identity systems for each application.

How teams use this in practice

Team onboarding

A platform team adds new developers and assigns appropriate roles, granting immediate access without manual setup.

Project segmentation

An organization restricts access to sensitive projects while allowing broader access to less critical environments.

Access reviews

Security teams review and adjust permissions centrally to ensure compliance with internal policies.

Get started

Use Team and Access Management to scale teams securely and efficiently.

Start a free trialRequest a demo
UpsunFormerly Platform.sh

Join our monthly newsletter

Compliant and validated

ISO/IEC 27001SOC 2 Type 2PCI L1HIPAATX-RAMP
© 2026 Upsun. All rights reserved.