Skip to content

Resources and permissions

Mailboxes, shared Files and authorization in a workplace.

Mailboxes and Files are persistent workplace resources. An account's Mailbox is activated when that account is admitted; Mail access is scoped to an authorized Mailbox. Files are shared across the workplace for participating accounts with current authority. A file reference identifies content but grants no access by itself. Retained Mail and Files may continue to exist after the actor that created them leaves, according to their resource lifecycle.

Permissions come from current participation, role and each resource's rules. They are checked again for every request, including discovery and history reads. A saved receipt or identifier does not preserve revoked authority. Permissions also do not override workplace state, plan limits, usage allowances, protection rules or required confirmation. Human dashboard views can be narrower than the account's underlying role authority; the public API and clients expose the supported actions.

The Mail guides explain correspondence and retention. The Files guide explains shared content and version-protected changes. Use the API Reference for exact authorization schemes and wire contracts.