Back to all resources

ClickUp Permissions Explained: A Plain-English Guide for Teams

June 24, 2026

ClickUp permissions confuse almost everyone. A UK ClickUp Verified Consultant explains guests, members, roles and private items in plain English.

The ClickUp question that causes the most confusion

Permissions. Every time.

A team member accidentally sees a client budget they should not have. A client gets invited to the workspace and can suddenly see every internal List. An admin spends 45 minutes trying to share a single document with an external collaborator and still is not sure it worked.

ClickUp's permission system is genuinely powerful. It is also genuinely confusing until someone explains the logic underneath it. Once you see how it is structured, it starts to make sense. Here is that explanation.

As a ClickUp Verified Consultant working with businesses across the UK, permissions come up in almost every workspace I audit. Here is the plain-English version.

The core logic: hierarchy and specificity

ClickUp's permissions work on two principles. First, they follow the workspace hierarchy — Workspace, Space, Folder, List, Task. Second, the most specific setting wins.

If someone has view-only access to a Space but full edit access to a specific task within it, they can fully edit that task. The task-level permission overrides the Space-level permission because it is more specific. This is the rule that confuses most people, and also the rule that makes the system flexible once you understand it.

The four user types and what they actually mean

Owners and admins

Full access to everything. Admins can manage members, change settings, and access all content regardless of privacy settings. In most small businesses, the founder and one or two senior operations people should be admins. Everyone else should not.

Members

Access to all public items in the workspace by default. Members cannot access private Spaces or Folders unless explicitly invited. Members are always billed paid seats. Every person you add as a member costs you money every month.

Guests

Access only to the specific items they have been explicitly invited to. Guests are the right role for clients, contractors, and external collaborators. View-only guests are free and unlimited. Permission-controlled guests who can edit or comment are free up to your plan allocation. Beyond that they start billing as limited members — which is where unexpected invoices come from.

Limited members

A billing category, not really a role you choose. If a guest gets converted to a limited member — either because you ran out of guest seats or because they authenticated with your company email domain — they bill at the same rate as a full member. Check your Members list regularly for anyone labelled limited member who should be a guest.

Public vs private: the setting nobody checks

Every Space in ClickUp is either public or private. A public Space is visible to all members in the workspace. A private Space is only visible to people who have been explicitly invited to it.

Most workspaces I audit have everything set to public, which means every member can see every Space. That is fine for small teams where transparency is the goal. It is a problem when you have sensitive financial data, HR information, or internal discussions you do not want visible to the whole team.

The fix is simple: go to Space Settings and change the privacy to Private for any Space that contains content not every member needs to see. Then invite only the people who genuinely need access. Guests cannot see private Spaces at all, even if they are a member of the workspace.

The three permission scenarios that trip teams up

Sharing with a client

The right way: add the client as a guest using a personal email address, then share only the specific List or task they need to see. Set their permission to view only unless they need to comment. The wrong way: add the client as a member, or share a whole Space when they only need one List. Members see everything public.

Giving a contractor edit access to one thing

Add them as a guest. Open the specific List or task. Share it with the contractor and set their permission to edit. They can now edit that item and nothing else. They cannot see the rest of your workspace. Watch the email domain — if the contractor has a company email that matches your SSO configuration, their guest role may auto-convert to a limited member and start billing.

Making something private within a public Space

You can make individual tasks private even inside a public Space. Open the task, click the three-dot menu, and select Make Private. The task becomes invisible to everyone except the people explicitly invited. This works for sensitive tasks like performance reviews, salary discussions, or strategic planning.

The quarterly permissions audit

Every workspace should have a quarterly permissions review. It takes 15 minutes:

  • Check the Members list for any limited members who should be guests
  • Check guest access for anyone who has left a project or the company
  • Confirm private Spaces are still set to private
  • Remove edit access from contractors whose projects are complete

Most permission problems I see in audits are not configuration errors. They are permissions that were set correctly at the start and then never reviewed as the team changed around them.

Frequently asked questions

What is the difference between a ClickUp member and a guest?
Members have access to all public items in the workspace by default and are always billed paid seats. Guests only have access to the specific items they have been explicitly invited to and are generally free up to your plan allocation.

How do I stop a client seeing everything in my ClickUp workspace?
Add the client as a guest rather than a member and only share the specific Lists or tasks you want them to see. Make sensitive Spaces private so they are not visible to guests by default.

Can you have different permission levels for different people on the same task?
Yes. The most specific permission level always overrides the broader one, so you can give someone view-only access to a List but full edit access to a specific task within it.


Almost done! When you're ready, here are four ways I can help you:

  1. Read it. A guide on how to use ClickUp and actually make it work for you.
  2. Connect it. Let's be LinkedIn pals. I make funny videos sometimes.
  3. Workshop it. Book a 30-minute chat to talk processes and build a Miro together.
  4. Go for it. Fill in my contact form — let's talk ClickUp or Automations. Whatever tickles your pickle.

Wanna hear from the unfiltered version of me? Sign up to my newsletter. The Working Notes. 2 minute reads. Behind the scenes. Hopefully helpful. Maybe funny.

Read more resources

July 30, 2026

Automation Agency East Anglia: Where Toki Works Beyond Norwich

Looking for an automation agency covering East Anglia? Toki is based in Norwich and works with businesses across Norfolk, Suffolk, Cambridgeshire and beyond.

Read More
July 29, 2026

ClickUp Consultant Norfolk: Local Automation Support for Norfolk Businesses

Looking for a ClickUp consultant in Norfolk? Toki is a ClickUp Verified Consultant based in Norwich, working in person and remotely across the county.

Read More
July 28, 2026

Meet Toki: The Norwich Automation Consultancy Behind the ClickUp & Zapier Builds

Who is Toki? A Norwich automation consultancy founded by Jack Lenton, ClickUp Verified Consultant and Zapier Silver Solutions Partner. Here's what that means.

Read More