Overview

An organization keeps your company’s or team’s information together in FTE Tree. A user may belong to more than one organization, but information is kept separate between organizations. FTE Tree’s department structure can reflect how your teams, locations, or cost centers are organized.

The organization name is the name users see in FTE Tree. Two customers may have similar names, so each organization also has its own FTE Tree web address to keep access and support requests clear.

Organization administrators

FTE Tree does not give one person permanent owner status. The person who creates an organization receives the standard Organization administrator role with All departments access. People who can manage user access can review and change that access as responsibilities move between people.

Before removing an administrator, give the needed administrative access to another active user. FTE Tree protects the critical administrator access needed to continue managing access and security. Contact FTE Tree support if your organization no longer has an administrator who can make the required change.

Users in your organization

Within FTE Tree, each person has their own user account and can be given access to one or more organizations.

User access is managed separately for each organization. A user can use one login for multiple organizations, but their permissions and data access in one organization do not carry over to another. The table below shows how User 3 may be a member of both Organization A and Organization B.

User Organization A Organization B
User 1 Member Not a member
User 2 Not a member Member
User 3 Member Member

User 3 can open both organizations, but their roles and access are managed separately in each one. Removing User 3 from Organization A ends their access to Organization A without changing their access to Organization B.

Important: Belonging to more than one organization does not give a user access across them. The user must open each organization separately, and their permissions are set independently in each one.

After you create an account, your organization’s administrators can limit invitation and email-recipient domains or require the organization’s company sign-in method. MFA remains an account security feature, and FTE Tree asks for recent MFA before sensitive administrative changes.

Organization web address and separation

Each organization has its own FTE Tree web address. After signing in, users can select the organization they want to open; they do not need to save or type that address themselves.

This provides several important benefits:

  • Clear identity: Your organization’s address is unique and recognizable to your team.

  • Access checks: Users who are not members of your organization cannot open it.

  • Current access requirements: Whenever someone opens a page or takes an action, FTE Tree confirms that the person is active, the subscription is current, the sign-in method is allowed, and the person has the right permissions.

When a user belongs to multiple organizations, they select which organization to access and are directed to that organization’s FTE Tree address. There is no cross-organization data access just because the user is signed in. A user may have two organizations open in different tabs, but each tab is checked against that organization’s own permissions and security requirements.

Data separation and security

FTE Tree enforces strict data separation between organizations:

  • Organization-level data separation: Data stored in FTE Tree, including departments, positions, employees, approval requests, and reports, is associated with your organization so it is not visible to other organizations.

  • Organization-specific permissions: A user’s roles and access in one organization do not affect their access in another. Removing a user from your organization revokes their access to your data.

  • Organization-specific company single sign-on (SSO): One organization may allow the standard FTE Tree sign-in while another requires its own Microsoft 365, Okta, or other company account. A matching email domain alone does not satisfy that requirement.

  • Protected information: FTE Tree protects information while it is sent and stored, including uploaded files.

  • Subscription access: Access to your organization requires a valid, active subscription. If a subscription lapses, access to the organization’s data is restricted until the subscription is renewed.

These protections keep each organization’s information separate and subject to that organization’s access settings. For more about multi-factor authentication and single sign-on, see Sign in and use MFA.