> For clean Markdown of any page, append .md to the page URL.
> For a complete documentation index, see https://docs.instabase.com/llms.txt.
> For AI client integration (Claude Code, Cursor, etc.), connect to the MCP server at https://docs.instabase.com/_mcp/server.

# Organization settings

> Manage organization-level settings, including enabling opt-in features.

Admins can manage organization-level settings.

## Limiting API token creation

By default, all organization members can [create their own AI Hub-managed API tokens](/api-sdk/authorization) on the APIs settings page. You can disable API token creation for all members, or limit the permission to members of specific [groups](/admin/group-management/).

Organizations using [externally managed tokens from OAuth providers](/admin/security/oauth-providers) can disable AI Hub-managed token creation to enforce using OAuth provider tokens for all API access.

When disabled, all previously created AI Hub-managed tokens lose access but aren't revoked. If API token creation is later re-enabled, previously created tokens are restored and can again be used to authorize requests, unless their expiration date has passed.

> **Info**
>
> Disabling API token creation for all members also blocks admins from creating tokens for [service accounts](/admin/service-accounts/). To allow token creation for specific service accounts, add those service accounts to a group and enable token creation for that group. Admins can manage these settings even if they can't create tokens for themselves.

1. In the header, click the initials icon and select **Settings**. Select the organization name tab.

2. Click **Manage** > **Update organization settings**.

3. Select who can create API tokens.

   * No members -- Clear the **Allow members to create API tokens** checkbox.

   * Some members -- Select **Allow members to create API tokens**, but restrict to **Selected groups**. Then, enter the names of the allowed groups. Accounts that aren't part of a selected group lose the ability to create API tokens or, for service accounts, have tokens created on their behalf.

   * All members -- Select **Allow members to create API tokens** and the **All members** option.

4. Click **Save changes**.

## Enabling opt-in features

Some features are opt-in so you can enable them when they fit particular use cases in your organization. After you enable an opt-in feature, all members of the organization can use it. You can disable an opt-in feature at any time.

1. In the header, click the initials icon and select **Settings**. Select the organization name tab.

2. Click **Manage** > **Manage opt-in features**.

3. Review the list of available features and select any features to enable.

4. Click **Update**.

### Opt-in features

The following features are available as opt-in. Version numbers indicate the release in which the feature became available.

> **Note**
>
> If you don't see the option to enable one of the listed features, but are interested in using it, connect with Instabase Support.

| Feature name                         | Description                                                                                                                                                                                                                                                                                                                                              | Multi-tenant availability | Single-tenant availability |
| ------------------------------------ | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ------------------------- | -------------------------- |
| Enable OIDC group mapping            | Map identity provider groups to AI Hub groups when using OIDC-based SSO. See [26.20](/release-notes#2620) release notes and [Group mapping](/admin/group-management#group-mapping) for details.                                                                                                                                                          | Not supported             | 26.20                      |
| Review workflow updates              | Updated human review experience with role-based workflow views and timed task transitions. See [26.28](/release-notes#2628) release notes for details.                                                                                                                                                                                                   | 26.28                     | 26.24                      |
| Enable single app lineage            | Limits each project to one app. Additionally, workspace members with developer permissions or higher can update and version the app. See [26.34](/release-notes#2634) release notes for details.                                                                                                                                                         | 26.34                     | 26.34                      |
| Cross-class field automation metrics | Includes cross-class field results in [deployment metrics](/automate/monitoring-deployments) for packet-processing apps, including field-level automation rates, overall automation rate, and CSV exports. Enabling this feature changes the automation rate reported for those deployments. See [26.34](/release-notes#2634) release notes for details. | 26.34                     | 26.32                      |
| App portability                      | Migrate published app versions between AI Hub environments. See [26.36](/release-notes#2636) release notes and [Migrating apps between environments](/automate/migrate-apps) for details.                                                                                                                                                                | 26.36                     | 26.36                      |
| Review task locking                  | Only one user can edit a review task at a time. Other users get read-only access and can skip the task. See [26.38](/release-notes#2638) release notes for details.                                                                                                                                                                                      | 26.38                     | 26.38                      |

## Deleting organizations

Deleting an organization is not supported as a self-service action. To request your organization be deleted, email
[support@instabase.com](mailto:support@instabase.com).

Deleting an organization permanently deletes all projects, apps, and other resources created in the organization. All members also permanently lose access to resources in their personal workspaces.