Inviting client users
Nobody signs up for the client portal on their own. Every client account is created by you — either through an invite link, or by approving a Google access request. This article covers the invite link: the right tool when you know exactly who should get in.
Creating an invite
Invites live on the client's page in the console — which is what ties the future account to the right client. In the client's invites section, choose Invite user:
- Email (optional) — enter an address to lock the invite to that one person: only a Google account with that exact email can redeem it. Leave it empty for an open invite that the client's contact can pass to whoever on their team should have it.
- The invite is valid for 7 days. After that it expires and shows as invalid; just create another.
- Each invite is single-use — once someone redeems it, it's spent.
Copy the invite link from the list and send it however you normally reach the client — email, WhatsApp, their ticket. The list shows each invite's expiry and whether it's been accepted, and a Revoke action deletes an invite that should no longer work.
Redeeming — Google sign-in only
Be clear with the person you're inviting about one thing: an invite link can only be redeemed by signing in with Google. When they open the link, they'll see a Google sign-in button — not a registration form. There is no way to redeem an invite by creating a password.
That's a deliberate choice, not a gap:
- No credentials to manage. You never set, email, or reset a password for a client user. There's nothing to intercept in transit and nothing for them to forget.
- The identity is verified. Google has already confirmed the person controls that email address — which is also what makes the email lock trustworthy.
- Access follows a person. The account is tied to an individual's Google identity, not to a password that quietly spreads across a team.
So before sending an invite, ask whether the person has a Google account (a Gmail address, or a company address on Google Workspace). If they don't and can't get one, they can't redeem an invite — route them through your own staff instead, or create the access another way with your UpAll workspace admin.
Passwords still work — for existing accounts
Google-only applies to redeeming an invite, not to signing in day-to-day. The portal's login page offers both email-plus-password and Google, and an existing client user with a password signs in with it as usual. The rule is narrow and worth stating exactly: new accounts via invite are born through Google; existing accounts sign in however they were set up.
After they're in
The new account belongs to that client and sees only that client's sites, monitors, and incidents — read-only, like every portal account. Before you send the first invite, it's worth opening the client's portal yourself to confirm the view is what you want their team to see: right monitors on the right sites, sensible names in the language they read, their logo in place.