# Control who can see it

New artifacts start **private** — only you — unless your workspace’s **default access** says otherwise. **Share**, at the top of an artifact’s page, lists who can open it — the same list as its **Access** section — one row each: a person, everyone at a domain, a share link, everyone in the workspace, a sign-in provider, or anyone with the address. Each row has a role — **Viewer** opens it, **Commenter** also comments and records, **Editor** also changes it — and someone matched by several rows gets everything they give. To add people, type their email addresses (or a domain, like `acme.com`) in the field at the top, pick their role, and press Add; each is emailed the link (with your note, if you write one) unless you untick **Notify people**. Changes apply within seconds; making it public asks first. Or just ask your assistant: “only let people at acme.com open this.”
