One account. Every client. Nothing crosses over.

Multi-tenancy is not a checkbox feature for an MSSP platform, it is the whole architecture. One Mispar account manages every client organization, and each organization’s domains, users, credentials, and reports stay scoped to that client only.

Your MSSP account
Northwind Retail12 domains · 11 users
Harbor Logistics5 domains · 4 users
Acme Group6 domains · 9 users

Each organization is boxed off. No client can see another client’s data, even by accident.

Organizations

Your whole book in one list.

Create, edit, or deactivate a client organization in a few fields: name, domains, users. Each organization carries its own plan type (trial or full), creation date, and expiration date, visible in one list across your whole book.

One Mispar console listing every client organization, surrounded by per-client cards showing each one's domains, alerts, exposed credentials and latest finding

Role-based access control

Permissions gate everything, not just what is hidden.

Define roles by name and a permissions checklist grouped by area. Assign roles to your admins and team members. Permissions gate which navigation items appear, which dashboard panels load, and which actions a user can take, not just what is visually hidden in the interface.

The roles settings screen: each role listed with its permission count, creation and update dates, and a promoted flag
Client-side users

Sandboxed to their own tenant

Within an organization, users get a role (Admin or User), a domain assignment, and a status. They cannot see another client’s data even by accident.

Why it matters at scale

Five clients is easy. Fifty is not.

Enforced RBAC lets you hand day-to-day triage to junior analysts, keep credit allocation with finance, and keep account strategy with account managers, without building custom access logic yourselves.

Map role setup onto your actual team.