# Users

Users are the people of a tenant. Each has a role (admin or member) that
limits tenant-wide operations and API key scopes.

Operations: `users.me` reads your own profile and `users.me.update` changes
your name or locale. `users.list`, `users.get`, `users.update_role` and
`users.remove` manage other users of the tenant.

Rules:
- Listing, role changes and removal need an admin.
- Users referenced by audit history cannot be removed.
- Access to Spaces is granted per Space (see the spaces guide), not here.
