Role-Based Access Control
CreateWorker uses RBAC to manage permissions:
Organization Roles
**Owner**: Full access, can delete organization**Admin**: Manage members, workers, and settings**Member**: Create and manage assigned workersWorker Access
Workers can be assigned to specific team membersAccess can be restricted by role or individuallySecurity Features
Audit Logging
All actions are logged for complianceView who did what and whenExport logs for analysisSafety Rules
Define what workers can and cannot doBlock sensitive operationsRequire approval for risky actionsContent Filtering
Automatic detection of sensitive contentSecrets and credentials are never exposedPII handling follows best practicesBest Practices
Use least-privilege accessRegularly review member permissionsEnable audit logging for complianceSet appropriate autonomy levelssecuritypermissionsaccess