See AlmaSEO on a live client workspace The running app, fully populated. No signup, no login.

Team

Team: Agency Roles, Client Access and Hours

  • Level Beginner
  • Time 14 min
  • Plans Pro (3 seats) and Agency (5 seats, more available)

Why this matters

The first hire is when most agencies get sloppy with access. Everyone shares one login, a freelancer can see every client's data, and when someone leaves, nobody's quite sure what they could still get into.

The Team page fixes that. Everyone works in the same AlmaSEO account, on the same clients, with the same work log. What changes from person to person is what they're allowed to do and which clients they can see. It also shows where the team's time actually goes.

The business concept: give people only what the job needs

Security people call it least privilege: every person gets exactly the access their job requires, and nothing more. It sounds strict, but it protects everyone:

  • Your clients: a contractor working on one client can't see (or accidentally change) another client's site.
  • Your team: nobody gets blamed for a change they couldn't have made.
  • You: when someone leaves, you remove one person, and you know exactly what they had access to.

A good habit: start people small and move them up. Invite a new hire as a Viewer on one site. When they're ready, one click makes them an Analyst or ticks another site.

The SEO concept: clients should own their own accounts

This one trips up a lot of agencies. When you take on a client, their Google Search Console, Google Analytics and Google Business Profile should be owned by the client, with your agency added as a user.

Why it matters:

  • Their data is their history. If the relationship ends, they keep years of search data, reviews and rankings history.
  • It protects your reputation. Agencies that "own" client accounts get accused of holding them hostage, even when they don't mean to.
  • It's cleaner when staff change. Access tied to your agency's accounts is easy to update; access tied to a former employee's personal Gmail isn't.

The same principle runs through AlmaSEO: people get access to what their role needs, and ownership stays where it belongs.

Walkthrough

Where: Team, in the sidebar. Plans: Pro includes 3 seats, Agency includes 5. On Agency, the owner can buy more at $12 per seat per month. Every member uses a seat, including the owner.

The Team page for a four-person agency: the organization name card and a members table with an owner, a manager, an analyst and a viewer.
A four-person agency with one person in each role. The Team page of the product guide documents every control on it.

The four roles

The members table with each person's name, email, role picker, site access and last activity.
The members table. The role picker and Site access are both on the row.
Role Can do Can't do Sees
RoleOwner Can doEverything: billing, seats, the team, every site and setting Can't doBe removed or leave the team SeesEvery site
RoleManager Can doRuns the team day to day: sites, publishing, content, audits, settings, inviting and removing analysts and viewers Can't doBilling, buying seats, changing the team cost rate, adding or removing other managers SeesEvery site, team hours and history
RoleAnalyst Can doCreates content, runs audits and logs work on their sites Can't doChange site settings or WordPress details, delete content SeesOnly the sites ticked for them, and their own activity
RoleViewer Can doReads, and comments on work entries Can't doChange anything SeesOnly the sites ticked for them

Only the owner can make someone a Manager.

Inviting someone

The Invite Member dialog with an email field and the role options: Manager, Analyst and Viewer, each with a one-line description.
Invite Member. The role descriptions here are the shortest summary of what each one can do.
  1. Click Invite Member (owners and managers).
  2. Enter their email and choose a role. Managers can only invite analysts and viewers.
  3. They get an email with a link that works for 7 days. If they don't have an AlmaSEO login, the link walks them through signing up and drops them onto your team.

Seats: a pending invite doesn't hold a seat, but accepting one needs a free seat. If the team's full, the person is told to ask you for more seats. The seat bar turns yellow at 70% and red at 90%.

Pending Invites shows invites not yet accepted. Revoke cancels one and its link stops working. Sent it to the wrong address? Revoke and invite again.

Choosing which clients someone sees

The Site Access dialog listing client sites with tick boxes, for choosing which ones a member can see.
Site Access. It saves as you tick — an unticked site does not exist for that person.

On an Analyst or Viewer's row, click Site access and tick the sites they should see. It saves as you tick. Everything else simply doesn't exist for them: it's not in their site list, and they can't open it even with a direct link. Owners and managers always see every site.

Changing roles, removing people, handing over

  • Change a role: use the role picker on their row. It takes effect immediately.
  • Remove someone: frees their seat and ends their access. The work they logged stays, marked former, so client history and profitability don't change.
  • Leave a team: anyone except the owner can leave.
  • Hand over ownership: the owner picks Owner in another member's role picker, and the old owner becomes a Manager. While a paid plan is active, this needs support's help, because billing has to move too. Contact support@almaseo.com.

Team Time Tracking

Team Time Tracking: total hours, active members, average per person and work entries, above one card per person.
Team Time Tracking. One card per person, busiest first, with time by client.

Owners and managers see where the team's time went. Pick a range and download it as a CSV if you need it.

  • Total Hours, Active Members, Avg / Person, Work Entries across the top
  • One card per person, busiest first: hours, share of the team total, sites and types of work, and Time by client
  • View All Activity opens everything one person logged, grouped by day

Every entry has its own comment thread. When an owner or manager comments, the person who did the work is notified in the app, by email, and on Slack if it's connected. Questions about a piece of work stay attached to the work — which is what turns a time log into proof of work a client can read.

These are the same hours that drive Profitability. A team that logs its time here has retainer margins you can trust.

Team History and Company Holidays

  • Team History (owners and managers): every join, removal, departure and role change, with who made it and when. It keeps the last 100 events.
  • Company Holidays: days the agency is closed. They're taken out of the workday count used for workload pacing (the Workload Planner and the burnout check), so nobody looks behind on a day nobody was working. They don't change billing or retainer fees. Everyone can see the list; owners and managers add and remove days.

Custom Portal Domain (running client links on your own domain) is coming soon.

Real-world example: from solo to a team of four

You've been solo for years. This month you're growing.

  1. Sarah, your first employee, will run clients day to day. You invite her as a Manager. She sees every site, can invite help, but can't touch billing.
  2. James, a freelance writer, handles content for Lakeside Mold Pros only. Sarah invites him as an Analyst and ticks just that site. He writes drafts and logs his hours. He never sees your other clients.
  3. Bob, of Bob's Gardening, wants to see what you're doing. Sarah invites him as a Viewer with only his site ticked. He reads the work log and leaves a comment asking about a blog post. James gets notified and answers on the same entry.
  4. Three months later, James's contract ends. You remove him. His seat frees up, his access ends instantly, and his hours stay on Lakeside's record, marked former, so that client's profitability still adds up.

While onboarding Lakeside, you also noticed their Google Business Profile was owned by a previous agency. You helped them reclaim it and added your agency as a manager on it. That's the kind of thing clients remember.

Key takeaways

  • Give people only the access their job needs. Start small and move them up.
  • Viewer + one site is the right setup for clients who want to watch progress.
  • Analysts do the work on their sites but can't change settings or delete content.
  • Managers run the team but can't touch billing. Only the owner can.
  • Accepting an invite needs a free seat. Pending invites don't reserve one.
  • Removing someone keeps their logged hours, so your records stay accurate.
  • Clients should own their own Google accounts, with your agency added as a user.

That's the last lesson in this run. The Academy index has the whole course, and a client who wants to watch progress without a seat is what white-label reporting is for.

Check your knowledge 6 questions · nothing is recorded

Nothing here is recorded or scored. Pick an answer to see whether it holds up.

  1. A client wants to log in and watch progress on their own site. What's the right setup?

  2. You hire a freelance writer for one client. Which role and access?

  3. Your Manager says they can't see the Profitability page. Why might that be?

  4. You have 1 free seat and send invites to 3 people. What happens?

  5. You're taking on a new SEO client. Who should own their Google Search Console and Google Business Profile?

  6. A team member leaves the agency. What happens to the hours they logged?

Go deeper

This lesson teaches the screen. The reference version documents every field on it.

Practise on real sites

Every screen in this lesson is live in the demo.

Open it with sample clients already loaded, then start a trial and connect your own.

14 days, every Agency feature switched on, no card required.