Organizations
Manage your organizations and their resources.
Daytona provides organizations as a way to group resources and enable collaboration. Users can work individually in their personal organization or together in a collaborative organization.
Go to Daytona Dashboard ↗ to manage your organizations, or use the API to manage them programmatically.
Personal vs Collaborative
Every Daytona user starts with a personal organization, ideal for solo use and experimentation. Collaborative organizations are created manually and designed for company-wide collaboration with shared access and controls.
| Feature | Personal organization | Collaborative organization |
|---|---|---|
| Creation | Automatic on signup | Manually by a user |
| Members | Single user only | Multiple users (invite-based) |
| Access Control | No roles or permissions | Roles with granular resource-based assignments |
| Billing | Tied to individual user | Shared across team members |
| Use Case | Personal testing, small projects | Company/team development and production |
| Quota Scope | Per user | Shared across all members |
| Deletable | No | Yes (by Owner) |
Users can switch between their personal and collaborative organizations by using the dropdown in the Daytona Dashboard ↗ sidebar. Each organization has its own sandboxes, API keys, and resource quotas.
Create organization
Daytona provides options to create organizations in Daytona Dashboard ↗ or programmatically using the API.
- Go to Daytona Dashboard ↗
- Expand the dropdown at the top-left corner of the sidebar to view your organizations
- Click Create Organization
- Enter the organization name
- Select a region
- Click Create
curl 'https://app.daytona.io/api/organizations' \
--request POST \
--header 'Content-Type: application/json' \
--header 'Authorization: Bearer YOUR_API_KEY' \
--data '{
"name": "My Organization",
"defaultRegionId": "us"
}'List organizations
List all organizations the authenticated user belongs to.
curl 'https://app.daytona.io/api/organizations' \
--header 'Authorization: Bearer YOUR_API_KEY'Get by ID
Get an organization by ID.
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID' \
--header 'Authorization: Bearer YOUR_API_KEY'Leave organization
Leave an organization.
- Go to Daytona Dashboard ↗
- Expand the dropdown at the top-left corner of the sidebar to view your organizations
- Select the organization you want to leave
- Click Settings in the sidebar
- Click Leave Organization
- Confirm by clicking Leave
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/leave' \
--request POST \
--header 'Authorization: Bearer YOUR_API_KEY'Delete organization
Delete an organization.
- Go to Daytona Dashboard ↗
- Expand the dropdown at the top-left corner of the sidebar to view your organizations
- Select the organization you want to delete
- Click Settings in the sidebar
- Click Delete Organization
- Confirm the deletion by typing the organization name and clicking Delete
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID' \
--request DELETE \
--header 'Authorization: Bearer YOUR_API_KEY'Roles
Users within an organization can have one of two different roles:
- Owners have full administrative access to the organization and its resources. Organization owners can perform administrative actions.
- Members have no administrative access to the organization, while their access to organization resources is based on Assignments.
Role assignments
The list of available role assignments includes:
| Assignment | Description |
|---|---|
Viewer (required) | Grants read access to sandboxes, snapshots, and registries in the organization |
Developer | Grants the ability to create sandboxes and keys in the organization |
Sandboxes Admin | Grants admin access to sandboxes in the organization |
Snapshots Admin | Grants admin access to snapshots in the organization |
Registries Admin | Grants admin access to registries in the organization |
Volumes Admin | Grants admin access to volumes in the organization |
Super Admin | Grants full access to all resources in the organization |
SSO Admin | Grants permission to manage the organization's SSO identity providers |
Auditor | Grants access to audit logs in the organization |
Infrastructure Admin | Grants admin access to infrastructure in the organization |
Limits Viewer | Grants read-only access to the organization's usage and limits |
Billing Viewer | Grants read-only access to the organization's spending, wallet, and billing information |
Billing Admin | Grants full access to view and manage the organization's spending, wallet, and billing information |
Create role
Create a new role in an organization.
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/roles' \
--request POST \
--header 'Content-Type: application/json' \
--header 'Authorization: Bearer YOUR_API_KEY' \
--data '{
"name": "Maintainer",
"description": "Can manage all resources",
"permissions": ["write:sandboxes", "delete:sandboxes"]
}'List roles
List all roles in an organization.
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/roles' \
--header 'Authorization: Bearer YOUR_API_KEY'Update role
Update a role in an organization.
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/roles/ROLE_ID' \
--request PUT \
--header 'Content-Type: application/json' \
--header 'Authorization: Bearer YOUR_API_KEY' \
--data '{
"name": "Maintainer",
"description": "Can manage all resources",
"permissions": ["write:sandboxes", "delete:sandboxes"]
}'Delete role
Delete a role in an organization.
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/roles/ROLE_ID' \
--request DELETE \
--header 'Authorization: Bearer YOUR_API_KEY'Members
Daytona provides methods to manage members in an organization.
List members
List all members in an organization.
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/users' \
--header 'Authorization: Bearer YOUR_API_KEY'Invite members
Invite a new user to an organization.
- Go to Daytona Dashboard ↗
- Click Invite Member
- Enter the email address of the user you want to invite
- Select a role for the new user. If you select the
Memberrole, define their assignments
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/invitations' \
--request POST \
--header 'Content-Type: application/json' \
--header 'Authorization: Bearer YOUR_API_KEY' \
--data '{
"email": "mail@example.com",
"role": "member",
"assignedRoleIds": ["00000000-0000-0000-0000-000000000001"]
}'Remove members
Remove a user from an organization.
- Go to Daytona Dashboard ↗
- Click Remove next to the user you want to remove
- Confirm the removal by clicking Remove
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/users/USER_ID' \
--request DELETE \
--header 'Authorization: Bearer YOUR_API_KEY'Update access
Update the access of a member in an organization.
- Go to Daytona Dashboard ↗
- Click the three-dot menu on the member row
- Click Change Role or Manage Assignments
- Update the role or assignments and click Save
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/users/USER_ID/access' \
--request POST \
--header 'Content-Type: application/json' \
--header 'Authorization: Bearer YOUR_API_KEY' \
--data '{
"role": "member",
"assignedRoleIds": ["00000000-0000-0000-0000-000000000001"]
}'Invitations
Manage invitations in an organization.
- Go to Daytona Dashboard ↗
- Expand the dropdown at the bottom of the sidebar to view pending invitations to join other organizations.
curl 'https://app.daytona.io/api/organizations/invitations' \
--header 'Authorization: Bearer YOUR_API_KEY'Get invitations count
Get the number of invitations in an organization.
curl 'https://app.daytona.io/api/organizations/invitations/count' \
--header 'Authorization: Bearer YOUR_API_KEY'Accept invitation
Accept a pending organization invitation.
- Go to Daytona Dashboard ↗
- Click your profile at the bottom-left of the sidebar
- Click Invitations
- Click the checkmark button on the invitation row
curl 'https://app.daytona.io/api/organizations/invitations/INVITATION_ID/accept' \
--request POST \
--header 'Authorization: Bearer YOUR_API_KEY'Once a user accepts an invitation to join an organization, they get access to resource quotas assigned to that organization and they may proceed by issuing a new API key and creating sandboxes.
Decline invitation
Decline a pending organization invitation.
- Go to Daytona Dashboard ↗
- Click your profile at the bottom-left of the sidebar
- Click Invitations
- Click the X button on the invitation row
- Confirm by clicking Decline
curl 'https://app.daytona.io/api/organizations/invitations/INVITATION_ID/decline' \
--request POST \
--header 'Authorization: Bearer YOUR_API_KEY'List pending
List pending invitations for an organization.
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/invitations' \
--header 'Authorization: Bearer YOUR_API_KEY'Update invitation
Update an invitation for an organization.
- Go to Daytona Dashboard ↗
- Scroll to the Invitations table
- Click the three-dot menu on the invitation row
- Click Edit
- Update the role or assignments and click Update
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/invitations/INVITATION_ID' \
--request PUT \
--header 'Content-Type: application/json' \
--header 'Authorization: Bearer YOUR_API_KEY' \
--data '{
"role": "member",
"assignedRoleIds": ["00000000-0000-0000-0000-000000000001"],
"expiresAt": "2030-01-01T00:00:00.000Z"
}'Cancel invitation
Cancel an invitation for an organization.
- Go to Daytona Dashboard ↗
- Scroll to the Invitations table
- Click the three-dot menu on the invitation row
- Click Cancel
- Confirm by clicking Confirm
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/invitations/INVITATION_ID/cancel' \
--request POST \
--header 'Authorization: Bearer YOUR_API_KEY'Regions
Each organization has a default region that determines where sandboxes are created when no specific target is provided. Regions represent geographic or logical groupings of compute infrastructure. Organizations can update their default region, manage per-region resource quotas, and query region quota information for individual sandboxes.
For more information on available region types, see the Regions guide.
Set default region
Set the default region.
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/default-region' \
--request PATCH \
--header 'Content-Type: application/json' \
--header 'Authorization: Bearer YOUR_API_KEY' \
--data '{
"defaultRegionId": "us"
}'Update region quota
Update the resource quota for an organization in a specific region. totalCpuQuota, totalMemoryQuota, totalDiskQuota, and totalGpuQuota are required; per-sandbox limits and allowed GPU types are optional.
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/quota/REGION_ID' \
--request PATCH \
--header 'Content-Type: application/json' \
--header 'Authorization: Bearer YOUR_API_KEY' \
--data '{
"totalCpuQuota": 100,
"totalMemoryQuota": 200,
"totalDiskQuota": 500,
"totalGpuQuota": 0
}'List available sandbox classes
List the sandbox classes available to an organization. Each entry includes the region ID, the sandbox class, whether GPUs are available, and the allowed GPU types.
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/available-sandbox-classes' \
--header 'Authorization: Bearer YOUR_API_KEY'Organization settings
The settings page in the Daytona Dashboard ↗ allows you to view the organization ID and name, and optionally delete the organization if you don't need it anymore. This action is irreversible, so please proceed with caution. Personal organizations are there by default and cannot be deleted.
Advanced operations
Daytona provides methods to perform advanced operations on an organization.
Usage overview
Get the usage overview for an organization.
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/usage' \
--header 'Authorization: Bearer YOUR_API_KEY'Update organization quota
Update the resource quota for an organization. All fields are optional; omitted fields are left unchanged.
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/quota' \
--request PATCH \
--header 'Content-Type: application/json' \
--header 'Authorization: Bearer YOUR_API_KEY' \
--data '{
"maxCpuPerSandbox": 4,
"maxMemoryPerSandbox": 8,
"maxDiskPerSandbox": 10,
"snapshotQuota": 100,
"volumeQuota": 100,
"secretQuota": 100
}'Suspend organization
Suspend an organization. reason and until are required. suspensionCleanupGracePeriodHours sets the number of hours before suspended resources are cleaned up.
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/suspend' \
--request POST \
--header 'Content-Type: application/json' \
--header 'Authorization: Bearer YOUR_API_KEY' \
--data '{
"reason": "Payment overdue",
"until": "2030-01-01T00:00:00.000Z",
"suspensionCleanupGracePeriodHours": 24
}'Unsuspend organization
Remove the suspension from an organization.
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/unsuspend' \
--request POST \
--header 'Authorization: Bearer YOUR_API_KEY'Update preview warning
Enable or disable the preview URL warning page that the proxy shows for sandboxes in an organization.
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/preview-warning' \
--request POST \
--header 'Content-Type: application/json' \
--header 'Authorization: Bearer YOUR_API_KEY' \
--data '{
"previewWarningEnabled": false
}'Update sandbox default limited network egress
Update the sandbox default limited network egress for an organization.
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/sandbox-default-limited-network-egress' \
--request POST \
--header 'Content-Type: application/json' \
--header 'Authorization: Bearer YOUR_API_KEY' \
--data '{
"sandboxDefaultLimitedNetworkEgress": true
}'Update experimental configuration
Update the experimental configuration for an organization.
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/experimental-config' \
--request PUT \
--header 'Content-Type: application/json' \
--header 'Authorization: Bearer YOUR_API_KEY' \
--data '{
"otel": {
"endpoint": "http://otel-collector:4317",
"headers": {
"api-key": "XXX"
}
}
}'OpenTelemetry configuration
Manage the OpenTelemetry (OTEL) configuration for an organization. The configuration consists of a collector endpoint and optional headers sent with each export request.
Get OTEL configuration
Get the OTEL configuration for an organization.
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/otel-config' \
--header 'Authorization: Bearer YOUR_API_KEY'Get OTEL configuration by sandbox auth token
Get the OTEL configuration of the organization that owns a sandbox, identified by the sandbox auth token.
curl 'https://app.daytona.io/api/organizations/otel-config/by-sandbox-auth-token/SANDBOX_AUTH_TOKEN' \
--header 'Authorization: Bearer YOUR_API_KEY'Update OTEL configuration
Update the OTEL configuration for an organization. endpoint is required; headers is optional.
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/otel-config' \
--request PUT \
--header 'Content-Type: application/json' \
--header 'Authorization: Bearer YOUR_API_KEY' \
--data '{
"endpoint": "http://otel-collector:4317",
"headers": {
"x-api-key": "my-api-key"
}
}'Delete OTEL configuration
Delete the OTEL configuration for an organization.
curl 'https://app.daytona.io/api/organizations/ORGANIZATION_ID/otel-config' \
--request DELETE \
--header 'Authorization: Bearer YOUR_API_KEY'