# A social media scheduler with real team roles, not a shared login > DunSocial gives every teammate their own owner, admin, or member role instead of one shared password to the brand's social accounts. See what each role can do. - Published: 2026-09-25 - Last updated: 2026-09-25 - Author: Sanju (Founder & CEO @ DunSocial) - Topics: tips, team --- The fix for "everyone shares one login to the brand's social accounts" is a scheduler with real roles: owner, admin, & member, each with a fixed set of permissions enforced on the server, not just hidden in the UI. Invite teammates individually, give them only what their job needs, & nobody has to hand over a shared password to post. ## Why a shared login is the wrong default A shared password to your brand's social accounts means everyone who leaves the team still has it until someone remembers to rotate it. Everyone can do everything whether or not their job needs it, & there is no record of who actually scheduled or published a given post. It works until the first time it does not, usually right after someone leaves. ## The three roles, & what each one can actually do DunSocial's workspace roles are **owner**, **admin**, & **member**, enforced the same way on the API for every caller, whether that is the web app, the CLI, or MCP. UI restrictions are not the security boundary; the server checks the role on every request. | Capability | Owner | Admin | Member | | --- | :---: | :---: | :---: | | Manage billing, connect/disconnect social accounts, invite teammates | ✅ | ✅ | ❌ | | Change a member's role | ✅ | ❌ | ❌ | | Transfer workspace ownership | ✅ | ❌ | ❌ | | Delete or close the workspace | ✅ | ❌ | ❌ | | Create & schedule content with the connected accounts | ✅ | ✅ | ✅ | That last row is the one that matters day to day: every role can draft, schedule, & post through the accounts the workspace already has connected. Nobody needs owner or admin just to do the actual job of writing & scheduling. Admin is for someone who manages the team & the connected accounts but should not be able to hand the whole workspace to someone else or delete it. Owner is a single, exclusive seat: there is always exactly one, & moving it is a deliberate transfer, not a shared password change. ## Why this beats "one login, everyone shares it" - **Individual accountability.** Every scheduled or published post is tied to the teammate who made it, not to an anonymous shared account. - **Offboarding is one click, not a password rotation.** Remove a member & their access to the workspace ends immediately. Nobody needs to change a password everyone else also has to relearn. - **The right amount of access, not all of it.** A new hire who drafts & schedules gets member. Whoever manages connected accounts & invites gets admin. Ownership, the one role that can transfer or delete the workspace, stays with one person. - **The same rule everywhere.** Roles apply identically in the web app, the [CLI](/cli), & [MCP](/mcp) from an AI host, so a member can't escalate their access by switching surfaces. ## Getting set up 1. **Invite teammates individually** from Settings → Team, rather than sharing one login. Each invite gets its own role. 2. **Default new teammates to member** unless they specifically need to manage connected accounts or invites. Admin is easy to grant later, harder to walk back gracefully. 3. **Keep exactly one owner**, & use a deliberate ownership transfer (not a shared credential change) if that person leaves the team. 4. **Pair roles with [AI Memory](/faq/ai-voice)**, so every teammate's drafts pull from the same saved brand facts & voice regardless of their role. Consistent output does not require giving everyone the same level of account access. Running several separate clients rather than one brand? DunSocial handles that too, with a separate workspace per client for hard isolation. See [best AI social media tool for agencies with separate client workspaces](/blog/best-ai-social-media-tool-for-agencies-client-workspaces). ## Try it $20/mo flat, or $192/yr, one seat included, extra seats $8/mo. 14-day trial, no card required. [Start the trial](https://app.dunsocial.com/login) & invite your team with real roles instead of a shared login. More on running a team: [for marketing teams](/for/marketing-teams). ## FAQ ### Can a member accidentally delete the workspace or change someone's role? No. Only the owner can change a member's role, transfer ownership, or delete/close the workspace. Members & admins cannot do any of those three things, & the restriction is enforced on the API, not just hidden in the UI. ### Can an admin remove the owner? No. Deleting or closing the workspace, & transferring ownership, are owner-only actions. An admin can manage social accounts, billing, & invites, but cannot touch ownership itself. ### What happens to a member's scheduled posts if they're removed from the workspace? Removing a member ends their access to the workspace immediately. Content they already scheduled through the workspace's connected accounts stays on the calendar; only the departing member's own login access changes, not the shared brand's account connections. ### Do CLI & MCP respect the same roles as the web app? Yes. Role permissions are enforced once on the API & apply the same way to every caller: the web app, the CLI, & hosted MCP all check the same role for the same action. ### How much does adding a teammate cost? One seat is included in the flat $20/mo (or $192/yr) plan. Each additional seat is $8/mo, regardless of whether that teammate is an admin or a member. --- ## About this document This is the Markdown representation of https://www.dunsocial.com/blog/social-media-scheduler-team-roles-without-shared-logins. The HTML version of the same page is at the same URL. You can also request Markdown from any page by sending `Accept: text/markdown`. Machine-readable summary of the whole site: https://www.dunsocial.com/llms.txt ## Company - Product: DunSocial, https://www.dunsocial.com - Legal entity: THISUX PRIVATE LIMITED, Chennai, Tamil Nadu, India - Support: support@dunsocial.com - Open the app: https://app.dunsocial.com/login