keybase / keybase-issues

A single repo for managing publicly recognized issues with the keybase client, installer, and website.
902 stars 37 forks source link

Team role to only manage subteam access for other users #4016

Open RecuencoJones opened 3 years ago

RecuencoJones commented 3 years ago

Hi team,

We are currently exploring Keybase as an option to have secrets shared between multiple users and teams. We find the subteam feature very useful to provide a narrow scope of users to access some set of secrets, however we found a bit of an issue with Owners and Admins.

These roles are able to create subteams and manage subteams members, even being able to add themselves as part of the subteam without any required approval.

This effectively makes any owner or admin user of the root team able to access all existing secrets through all subteams.

To us this is quite an inconvenience and would rather have either:

Is this something that could be achievable? Thanks!