September 2026 release is live Read More

Teams

Introduction

Teams can streamline user management by automatically applying changes to group access rights to all members of the team. Teams can be created based on shared characteristics, such as role or department. For example, you can create a team called 'AWS Finance' and grant its members access to the AWS Cost Dashboard, making it easier for your finance team to access this tool.

Why this matters: this is the other half of the keycard system covered on the Users page: a user's role decides what kind of access they get, and their team decides which specific accounts and dashboards that access actually applies to.

This shows up differently depending on your role:

  • Admins/Owners use Teams to onboard a new hire's access in one step — add them to the right team — instead of granting billing/usage account access one at a time.

  • FinOps managers use Teams to scope which billing and usage accounts a group can see, keeping unrelated or sensitive accounts restricted to only the people who need them.

  • IT/Security use Team scope as the practical enforcement point for least-privilege access — reviewing which accounts a team can reach is faster than auditing every individual user.

Create Team

Here are some key points to consider when creating a team:

  • By default, an 'Owner' team is created with full access to the account.

Here are the steps for creating a team

  1. Login to Mavvrik.

  2. Go to the teams page from the side menu.

Open Teams from the navigation menu
Open Teams from the navigation menu
  1. Click on the "Create Team" button.

  1. Enter the team name and description.

  1. Select the users which you want to add to the team. (If the user is not created, go to the users module and create new users and leave blank team option. Refer Modify User page.)

  1. Click on scope and select options to grant access (Options displayed here are Billing account, usage account, resource group, datacenter, cluster,namespace).

  1. If you select the 'Allow all' checkbox, it will enable all accounts to be accessed by this team.

  1. "If you don't want to give full access to all accounts, you can select specific teams from the list to grant access to

  1. Click on "Create".

Create a team
Create a team
  1. Team is created and displayed as shown below. When you select the number of rows, you will be able to view that same quantity of rows on the page.

Review the newly created team
Review the newly created team

Edit Team

Here are some key points to remember when editing a team:

  • The account access for the 'Default Team' cannot be modified. This team will always have full access to all accounts.

Below are the steps to edit a Team

  1. Login to Mavvrik.

  2. Go to the teams page from side menu.

Open Teams from the navigation menu
Open Teams from the navigation menu
  1. Click on edit team icon.

  1. Update the fields which you want to change.

  1. Click on "Update".

Update team details
Update team details
  1. Check the main team page to see the changes.

Delete Team

Here are some key points to remember when editing a team:

  • "The 'Default Owner Team' cannot be deleted. This team is a default team that is automatically created when an account is set up and it cannot be removed."

Below are the steps to delete a Team

  1. Login to Mavvrik.

  2. Go to the teams page from side menu.

Open Teams from the navigation menu
Open Teams from the navigation menu
  1. Click on Delete Team Icon.

Delete a team
Delete a team
  1. Click on the Delete icon

  1. Click Delete button from the popup

  1. Team is deleted from the List

  1. Click on the Cancel or X icon to close the pop-up

Note: If a team has any users assigned to it, you will not be able to delete the team. To delete the team, you will need to remove all users from the team, update the team, and then try to delete the team again. This is to ensure that no users are left without a team assignment when the team is deleted.

Troubleshooting

  • If a user reports missing accounts in their dashboard, check which team they belong to and that team's scope — access is entirely determined by team scope, not the user's role alone.

  • If you can't change the Default Team's account access, that's expected — it always has full access to all accounts and this cannot be modified.

FAQs

What does selecting "Allow all" for a team's scope actually do?
It grants that team access to every account across the options listed (billing account, usage account, resource group, datacenter, cluster, namespace) rather than only the specific ones you'd otherwise pick individually. Use it deliberately — it's the broadest access option available for a team.

Why can't I delete a team?
A team can't be deleted while it still has users assigned to it, and the Default Owner Team can never be deleted at all. If you're trying to delete a non-default team, remove all its users first, save that change, then delete the team.