Roles, identity & multi-vault access
One account, separate memberships
Your email, password, and MFA enrollment belong to one global ItemsInView account. Access to each vault is a separate membership. A membership stores your role in that vault and whether access is active.
- The same email and password are used across all vaults.
- Your role is vault-specific. Example: Admin in "Family Vault," Member in "Estate Vault."
- Being deactivated or removed from one vault does not remove the account or other vault memberships.
- A vault appears in the chooser and switcher only while the membership and vault are active.
- The vault URL identifies the target vault, but the server checks the signed-in account's membership before allowing entry.
Global-security warning: A password reset or MFA reset changes the global account. It signs the person out and affects sign-in to every vault, not just the vault where the Admin initiated the reset.
Member
A Member can use all day-to-day vault functions: Overview, Inventory, People, Reports, account security, and vault switching. Admin settings are hidden, and typing an Admin URL does not grant access.
Vault Admin
A Vault Admin has all Member abilities plus vault configuration, access management, and item-recovery controls. ItemsInView prevents actions that would leave a vault without an active Admin.
Platform Super Admin is different
The platform operator is not a vault Admin. The Super Admin Console manages vault lifecycle and aggregate telemetry but has no feature for opening customer item records, photos, documents, or financial reports. This guide covers Members and Vault Admins.