Admins decide who sees what. Your workspace is your team's shared space in AdKit. Inside it, each client or brand is a project with its own ad accounts, and those accounts come from a platform login, the Meta or Google sign-in an admin added once.
Every teammate gets an access level and a list of projects, and works only inside those.
This matters most for agencies: a teammate assigned to two clients can't open the other twenty, or see their ads.
Every member of a workspace has one of four levels, set under Settings → Members.
| Level | What they can do |
|---|---|
| Owner | Everything an Admin can, plus remove admins. The person who created the workspace. |
| Admin | Add platform logins, assign ad accounts to projects, invite and remove members, set anyone's access level and projects. Sees every project. |
| Write | Create, edit, and publish campaigns and drafts inside their assigned projects. Can't add logins or assign ad accounts. |
| Read only | View campaigns, results, and drafts inside their assigned projects. Can't change anything or publish. |
Pick Write for anyone who runs campaigns, and Read only for clients or reviewers who only check results.
Two guardrails. Admins can't lower their own access, so nobody locks themselves out of Settings by accident. And only the owner can remove an admin, so one admin can't lock the others out. The owner's role can't be changed or transferred yet. If the owner leaves your company, reach out and we'll move it.
With the levels clear, here is the order to set the team up.
Logins first, then accounts, then people. A member invited before their project has ad accounts lands in an empty project.
When they sign in, they see only the projects you picked, with the accounts you assigned. Nothing else in the workspace is open to them.
To change someone's level or projects, open Settings → Members and edit their row.
Changes apply immediately. Remove someone from a project, or switch them from Write to Read only, and their next click gets refused. If they had a tab open, it may keep showing the old screen until they reload, but nothing they do in it goes through.
The same goes for their AI agents. An agent connects with an AdKit key tied to the member's own account, so it gets that member's level and projects, whatever the member asks it to do. If Jade can only open the KPMG project, her Claude can only manage KPMG's campaigns.
Removing Jade from the workspace ends her access to every project, and her agents' access with it. How keys work is in Control what an AI agent can do.
Questions? Reach out and we'll help.
Sign in to each ad platform once, then let your agent connect the accounts.
Give each brand its own project and tell your agent which one to use.
The access levels for agent keys, from read-only to draft and publish.