What lives inside a workspace
- Videos. Your library, folders, and player settings.
- Analytics. Every report is scoped to this workspace’s events. A workspace with no traffic shows no numbers, not another workspace’s numbers.
- Domain allowlist. The hostnames your player is permitted to embed on. A request from a domain not on the list is refused.
- Integrations. Cart, ad, and CRM connections, including the Google Ads tracking setup, are configured per workspace.
- Reporting timezone. Set once under Settings, General. Every report and every chart in this workspace reads its date boundaries in this zone.
Roles
TrackPlay has two separate role systems. They answer different questions and are not the same list, so do not conflate them.- Workspace roles
- Organization roles
Two roles, scoped to one workspace: owner and admin.A workspace has exactly one owner. The owner is the billing-responsible party: usage
in this workspace accrues to their plan. This is enforced in the data layer, not only
the UI, so a second owner row cannot be created and the last owner cannot be demoted
or removed without transferring ownership first.Everyone else with access is an admin. Admins can manage the workspace day to day.
There is currently no invite-time role picker: every invite you send lands the
invitee as an admin. If you want to hand off ownership, invite them first, then
transfer.
Ownership transfer
Both role systems support a transfer, and both are atomic and restricted to the current owner. A workspace owner hands billing responsibility for that one workspace to another member. An organization owner hands the whole account to someone else. Neither transfer can be started by anyone but the person currently holding the role.API keys
Two systems exist. Use the current one. Scoped tokens are the current system. Mint as many as you need, each with its own name and its own scopes:
A token can carry an optional expiry between 1 and 3,650 days, or none at all. The
plaintext token is shown to you exactly once, at creation. TrackPlay stores only its
SHA-256 hash, so if you lose it, the fix is to mint a new one, not to recover the old one.
Audit log
Every workspace keeps an activity feed: who did what, and when. It is cursor-paginated (50 entries per page by default, up to 200), and you can filter by action, by the user who performed it, or by a date range.Sensitive fields (passwords, API keys, secrets, tokens) are redacted before an entry is
ever written to the log. A support agent or a teammate reading the audit trail sees that
a key was rotated, never the key itself.