> ## Documentation Index
> Fetch the complete documentation index at: https://docs.base44.com/llms.txt
> Use this file to discover all available pages before exploring further.

> ## Agent Instructions
> Internal links on these pages omit the .md extension. Append .md to a docs page URL, or send an Accept: text/markdown header, to get that page as markdown.

# Update workspace member role

> <Info>This API is in beta. Endpoints, fields, and behavior may still change, so avoid depending on it in production.</Info>

Changes a member's role in a workspace to `admin`, `editor`, or `viewer`. The new role applies right away. For someone whose invitation is still pending, it's the role they get when they accept.

You can't change your own role or the owner's. A role that a group grants can only be changed at the group, with [Update workspace group](/api-reference/update-workspace-group) or by changing its members. `admin` needs the Business plan or higher. Moving someone to `viewer` removes their own credit limit, and promoting a guest makes them a full member. Setting the role a member already has succeeds, so retrying is safe.

This is limited to 30 requests per minute, shared with [Update workspace member role](/api-reference/update-workspace-member-role), [Remove workspace member](/api-reference/remove-workspace-member), [Set member credit limit](/api-reference/set-member-credit-limit), and [Set default member credit limit](/api-reference/set-default-member-credit-limit). A signed-in session has its own limit, and every personal access token for the workspace shares one. Some workspaces have a different limit.

<Note>Call this as an owner or admin of the workspace, with a personal access token for that workspace sent as a Bearer token, or from a signed-in session. A read-only token is refused, and workspace API keys aren't accepted.</Note>



## OpenAPI

````yaml /developers/references/app-management/app-management-openapi.json put /api/workspace/members/{email}/role
openapi: 3.1.0
info:
  title: Base44 App Management API
  version: 1.0.0
servers:
  - url: https://app.base44.com
security:
  - PersonalAccessTokenAuth: []
paths:
  /api/workspace/members/{email}/role:
    put:
      summary: Update workspace member role
      description: >-
        <Info>This API is in beta. Endpoints, fields, and behavior may still
        change, so avoid depending on it in production.</Info>


        Changes a member's role in a workspace to `admin`, `editor`, or
        `viewer`. The new role applies right away. For someone whose invitation
        is still pending, it's the role they get when they accept.


        You can't change your own role or the owner's. A role that a group
        grants can only be changed at the group, with [Update workspace
        group](/api-reference/update-workspace-group) or by changing its
        members. `admin` needs the Business plan or higher. Moving someone to
        `viewer` removes their own credit limit, and promoting a guest makes
        them a full member. Setting the role a member already has succeeds, so
        retrying is safe.


        This is limited to 30 requests per minute, shared with [Update workspace
        member role](/api-reference/update-workspace-member-role), [Remove
        workspace member](/api-reference/remove-workspace-member), [Set member
        credit limit](/api-reference/set-member-credit-limit), and [Set default
        member credit limit](/api-reference/set-default-member-credit-limit). A
        signed-in session has its own limit, and every personal access token for
        the workspace shares one. Some workspaces have a different limit.


        <Note>Call this as an owner or admin of the workspace, with a personal
        access token for that workspace sent as a Bearer token, or from a
        signed-in session. A read-only token is refused, and workspace API keys
        aren't accepted.</Note>
      operationId: update_member_role_api_workspace_members__email__role_put
      parameters:
        - name: email
          in: path
          required: true
          schema:
            type: string
            description: >-
              Email of the member whose role to change, exactly as `email` in
              [List workspace members](/api-reference/list-workspace-members)
              returns it. Matching is exact, including case. URL-encode it: `@`
              as `%40` and `+` as `%2B`.
            title: Email
          description: >-
            Email of the member whose role to change, exactly as `email` in
            [List workspace members](/api-reference/list-workspace-members)
            returns it. Matching is exact, including case. URL-encode it: `@` as
            `%40` and `+` as `%2B`.
          example: dana@acme.com
        - name: workspaceId
          in: query
          required: true
          schema:
            type: string
            minLength: 1
            description: >-
              ID of the workspace. With a personal access token, use the token's
              workspace. Get it from `organization_id` in [Get
              app](/api-reference/get-app).
            title: Workspaceid
          description: >-
            ID of the workspace. With a personal access token, use the token's
            workspace. Get it from `organization_id` in [Get
            app](/api-reference/get-app).
          example: 67e0b12c4d8a3f005b21c9e4
      requestBody:
        required: true
        content:
          application/json:
            schema:
              $ref: '#/components/schemas/UpdateMemberRoleRequest'
      responses:
        '200':
          description: The member has the new role.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ChangeResult'
              example:
                status: success
                message: Member role updated successfully.
        '400':
          description: >-
            A group grants the member's role, or the member is a service account
            whose role can't change.
        '401':
          description: Missing or invalid credentials.
        '403':
          description: >-
            You aren't an owner or admin of the workspace, your token is for a
            different workspace or is read-only, your credential can't be used
            on this endpoint, you're changing your own role or the owner's, or
            `role` is `admin` and the workspace's plan doesn't allow admins.
        '404':
          description: No member or pending invitation with this email in the workspace.
        '409':
          description: Your workspace requires an unlocked SSO session.
        '422':
          description: Validation Error
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/HTTPValidationError'
        '429':
          description: Rate limit exceeded.
components:
  schemas:
    UpdateMemberRoleRequest:
      properties:
        role:
          type: string
          enum:
            - admin
            - editor
            - viewer
          description: The member's new role. `admin` needs the Business plan or higher.
          example: editor
      type: object
      required:
        - role
      title: UpdateMemberRoleRequest
      description: A member's new role.
    ChangeResult:
      properties:
        status:
          type: string
          const: success
          title: Status
          description: Always `success`.
          example: success
        message:
          type: string
          title: Message
          description: Short confirmation. Its wording can change, so don't parse it.
          example: Members added to group.
      type: object
      required:
        - status
        - message
      title: ChangeResult
      description: Confirms the change.
    HTTPValidationError:
      properties:
        detail:
          items:
            $ref: '#/components/schemas/ValidationError'
          type: array
          title: Detail
      type: object
      title: HTTPValidationError
    ValidationError:
      properties:
        loc:
          items:
            anyOf:
              - type: string
              - type: integer
          type: array
          title: Location
        msg:
          type: string
          title: Message
        type:
          type: string
          title: Error Type
      type: object
      required:
        - loc
        - msg
        - type
      title: ValidationError
  securitySchemes:
    PersonalAccessTokenAuth:
      type: http
      scheme: bearer
      description: 'Personal access token, sent as `Authorization: Bearer <token>`.'

````

This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.