Console and Workspace
Canopy has two places you sign in to. Which one you land in depends on what you administer.
Overview
Canopy separates the people who build an integration from the people who run an organization, and gives each their own application. They are not two accounts: you sign in once, and a product switcher moves you between whichever you can reach.
Signing in does not always take you to the same place. Canopy asks what you administer and opens the application that matches.
The two applications
Each is deployed separately. The Console lives on a console. subdomain and the Workspace on a workspace. one, and both are signed in to with the same Canopy account:
Developer Console
Where an integration is built. Applications and environments, the hierarchy, roles and permissions, API keys, OAuth clients, webhooks, SSO and directory sync.
Admin Workspace
Where an organization is run. The people in it, invitations, who administers what, recent activity, and the account itself.
Where things live
Most things belong to exactly one application, and the name usually gives it away. One does not:
Identities are the same people in both
There is one set of end users. Both applications show them, and what differs is the job you are there to do rather than the records you are looking at:
If a page in these docs tells you to open Identities, the surrounding section says which application it means.
Which one is yours
These docs are written for both audiences, in different language, because the two jobs are different.
Do not be surprised if either application shows you less than these docs describe. Both render from what you have been granted: an action you cannot take is absent rather than disabled, and a page you cannot open is not offered.
Next Step
Tell us how we can improve this guide.