Why authorization is per user
Erstan uses per-user authorization for NetSuite. When an agent calls a NetSuite tool, it calls it as you — using the NetSuite user and role you authorized. Your own NetSuite permissions decide what the agent can read and write.Because agents inherit your NetSuite role, you only ever grant Erstan the access you already have. Two people running the same agent may see different results if their NetSuite roles differ.
Authorize your NetSuite user
You can authorize from the connector page or directly from chat when an agent needs access.- From the connector
- From chat
1
Open the NetSuite connector
Go to Connectors in the sidebar and open NetSuite. The workspace connection must already be set up by an owner or admin — see Connecting NetSuite.
2
Go to Authorizations
Open the Authorizations tab. The Your NetSuite user card shows your current status: Authorization required, You authorized, or Authorization expired.
3
Click Authorize
Click Authorize (or Re-authorize if your access expired). A NetSuite popup opens — allow popups if your browser blocks it.
4
Sign in and approve in NetSuite
Sign in to NetSuite, choose a non-Administrator role, and approve access. Erstan polls until the card reports You authorized.
Manage or revoke your authorization
NetSuite access tokens are short-lived and refresh automatically, so you rarely re-authorize during normal use. You do need to re-authorize if your authorization shows Authorization expired or if your NetSuite role changes.Disconnect your NetSuite user
Disconnect your NetSuite user
Use Disconnect your NetSuite user to revoke only your personal authorization. The shared workspace connection and other members’ authorizations are unaffected. Agents can no longer act as you in NetSuite until you authorize again.
The Workspace members roster (owners and admins)
Owners and admins see a Workspace members roster on the Authorizations tab — a table of who has authorized their NetSuite user, with a summary like 3/5 members authorized.Managing the workspace connection and authorizations requires the Owner or Admin role. Members can authorize their own user but cannot change the shared connection.
Next steps
Connecting NetSuite
How an owner or admin sets up the shared workspace connection.
Managing NetSuite tools & write policy
Control which tools agents can use and which actions need approval.
Approving AI actions
Review and approve writes before they run in NetSuite.
Security & write safety
How per-user authorization and approvals keep you in control.