# Organizations

An **organization** is a top-level container that groups multiple [teams](https://docs.eraser.io/docs/teams) under shared administration, billing, and security. Organizations are built for larger companies that run many teams and want to manage them from one place – with centralized user management, a single shared plan, and organization-wide SSO.

<Callout kind="note" title="Availability">
  Only customers on a Business or Enterprise plan can create an organization. To set one up for your company, email **[hello@eraser.io](mailto:hello@eraser.io)** and our team will create it for you.
</Callout>

## How organizations relate to teams

In Eraser, every user and file belongs to a [team](https://docs.eraser.io/docs/teams). An organization sits one level above teams: it contains **many teams**, which inherit its default domain and plan. **Organization admins** manage every team, while licensed users belong to one or more teams. This keeps billing, membership, and security centralized while teams stay separate by department or project.

## Roles

| Role            | What they can do                                                                                       |
| --------------- | ------------------------------------------------------------------------------------------------------ |
| **Org admin**   | Access to all teams in the organization and to organization-wide settings – members, billing, and SSO. |
| **Team admin**  | Manage a single team – invite or remove members, and change that team's settings.                      |
| **Team member** | Full read, write, and comment access to all files belonging to their team.                             |

## What you can manage at the organization level

Organization admins manage everything from the **Organization Dashboard** (`/organization/dashboard`), which is split into four areas:

### Teams

See every team in the organization at a glance – name, domain, member count, latest activity, and assigned SSO. You can **create new teams** here (they inherit the organization's default domain). Teams are deleted from their own individual dashboards, not from the organization level.

### Users

Manage who belongs to the organization and their role:

* Promote a licensed user to **organization admin**, or remove the admin role.
* **Remove a user from all teams** in the organization.

### Plans & billing

Organizations share a **single plan across all teams**. From here you can view the current plan and seat usage and manage billing.

### Settings

* **Organization information** – name, primary domain, and plan with license usage.
* **SSO / SAML** – enable SAML SSO, configure your identity provider, and manage accepted email domains. Configured SSO tenants can then be assigned to individual teams.

To change your organization name or plan, contact **[hello@eraser.io](mailto:hello@eraser.io)**.
