Managed endusers
Give non-technical staff guarded AI through Copilot — no keys to hand out, spending capped by their member group, on your org's pool.
What an enduser is
Endusers are employees you manage centrally. They have no API key and no dashboard — they use Copilot (copilot.anoman.io) as their whole experience. With enduser routing, their chat spends the org's token pool, capped by their member group's per-member weighted caps and limited to the group's allowed model tiers.
So before you invite anyone, define the member group that will govern which models they reach and how much they can spend.
Invite one or invite in bulk
Invite a single enduser with POST /anoman/v1/accounts/{id}/members, or up to 500 at once with the bulk endpoint. Both are domain-gated by your member-domain allowlist. Bulk returns a per-row skip report — invalid_email, domain_not_allowed, duplicate_in_batch, already_invited, already_member — so you never wonder which addresses were dropped.
Invite one
Bulk invite
Endusers accept the same /invite/{token} flow as staff, then sign into Copilot — no key is ever issued to them.
Manage endusers over time
Admins run the full lifecycle from the API or the Members page: move an enduser to a different group, suspend them (which immediately blocks their completions — a suspended enduser gets 403) and reactivate, reset their password, or remove/offboard them. You can also change a staff member's role with a last-owner guard (an admin can't modify an owner).
Manage endusers
Offboarding keeps evidence. Removing an enduser blocks access immediately, but their conversations are retained per your retention policy — so audit trails survive the offboard.
Where to manage it
In the dashboard: Members page → Members tab (change role, suspend/reactivate, remove). Auditors (admin_read_only) see the tab read-only.
Onboard your team to Copilot
Invite staff in bulk, cap their spend, and give them guarded AI without a single API key.