All Products
Search
Document Center

Alibaba Cloud DevOps:Manage members

Last Updated:Dec 16, 2025

This topic describes how to manage members in an Alibaba Cloud DevOps organization.

Add organization members

You can add members to an Alibaba Cloud DevOps organization in two ways:

  • Manually create members as an administrator.

  • Synchronize members from a third-party identity provider.

Manually create members

  1. Log on to an Alibaba Cloud DevOps organization as an administrator.

  2. Click your profile picture in the upper-right corner and select Organization Settings from the drop-down menu.

  3. In the navigation pane on the left, choose Members. Click New User and enter the required information, such as Name, Account ID, Initial Password, and Department, along with any optional information.

  4. Click Confirm to create the member.

Synchronize members from a third-party identity provider

You can integrate your existing corporate identity provider, such as an Alibaba Cloud account, DingTalk, or Lark, to enable automatic member synchronization and logon.

How it works:

When single sign-on (SSO) is enabled for an identity provider, the system automatically creates an account in the organization for a user who logs on to Alibaba Cloud DevOps through the identity provider for the first time. The user is then added as a member. For more information about how to configure and attach an identity provider, see Identity provider management.

Account ID generation rule:

The account ID is generated by combining the account ID mapping field from the identity provider configuration, an underscore (_), and the current organization identifier.

View organization members

  1. Log on to your Alibaba Cloud DevOps organization as an administrator. On any page, click your profile picture in the upper-right corner and select Organization Settings from the menu.

  2. In the navigation pane on the left, choose Members to view and manage all members in the organization.

Members can have one of the following four statuses:

  • In use: The member has successfully logged on to the Alibaba Cloud DevOps organization and occupies a license.

  • Never logged on: The member was synchronized but has never logged on to the Alibaba Cloud DevOps organization. This member does not occupy a license.

  • Deactivated: The member cannot log on and all permissions are revoked. This member does not occupy a license. If the member is reactivated, their permissions are automatically restored.

  • Deleted: The member cannot log on and all permissions are revoked. This member does not occupy a license. The member can be restored, but their permissions and previous configurations are not automatically restored and must be reconfigured manually.

Modify member information

  1. As an administrator, on the Members page, select the target member.

  2. Click the member's name, or click the operation icon in the rightmost column and select Modify Member Information.

Note

If you set the Account Binding and Property Mapping rule in the identity provider configuration, fields that are mapped to the external identity provider cannot be edited. To modify these fields, you must make the changes in the identity provider. Alibaba Cloud DevOps automatically synchronizes these changes.

Deactivate an organization member

Deactivating a member account helps protect your organization's data security. This action is often used for temporary employee deactivations. A deactivated member can no longer access the organization or perform operations on its data, and their account no longer occupies a license. If a deactivated member is reactivated, their permissions are automatically restored.

  1. As an administrator, on the Members page, select the target member.

  2. Click the operation icon in the rightmost column and select Deactivate Member.

  3. Confirm the deactivation.

Delete an organization member

Deleting a member account helps protect your organization's data security. A deleted member can no longer access the organization or perform operations on its data, and their account no longer occupies a license.

  1. As an administrator, on the Members page, select the target member.

  2. Click the operation icon in the rightmost column and select Delete Member.

  3. Confirm the deletion.

Important

A deleted member's account is marked as deleted, but its unique identifiers, such as the account ID or email address, cannot be reused. You can restore the member. However, their permissions and related settings are not restored and must be reconfigured.