Skip to main content

Overview

Google Tag Manager (GTM) lets you add and update tracking tags — analytics, conversion pixels, remarketing scripts — on your website without editing code every time. Instead of sharing your Google password, you invite people to your account and give each one a specific permission level. To let TryRoki set up and maintain tracking for you, add our email address as a user on your GTM account. This guide walks through the permission levels and the exact steps to send the invite.
Ask your TryRoki contact which email address to invite, or email seo@tryroki.com. Never share your Google login — invitations give access without exposing your credentials.

Permission levels

GTM has two layers of permissions. Account permissions control who can manage the account itself, and container permissions control what someone can do inside each container (usually one container per website).

Account permissions

  • User — can view account settings and activity but cannot manage other users. This is the default.
  • Administrator — full control of the account, including creating containers and managing users. Administrators automatically get read access to every container.

Container permissions

Within a container you can grant one of the following, from lowest to highest:
  1. No access — the container is hidden from the user.
  2. Read — view tags, triggers, and variables, but change nothing.
  3. Edit — create workspaces and edit items, but not publish.
  4. Approve — create versions, but not publish.
  5. Publish — the highest level: read, edit, approve, and publish changes live.
For TryRoki to create and publish tags for you, grant Publish on the relevant container. If you prefer to review changes before they go live, grant Approve and publish them yourself.

Grant access at the account level

Use this when you want to give access to the whole account and all of its containers at once.
1

Open the Admin tab

Go to tagmanager.google.com and sign in. Select the account you want to share, then open the Admin tab.
Finding the Admin tab in Google Tag Manager

The Admin tab in Google Tag Manager.

2

Open User Management

In the Account column on the left, click User Management.
User Management under the account level in Google Tag Manager

User Management under the Account column.

3

Add a new user

Click the blue + button in the top-right corner, then choose Add users.
Add a user to Google Tag Manager on the account level

Adding a user at the account level.

4

Set permissions and invite

Enter the email address, choose the Account permissions (User or Administrator), optionally set Container permissions, then click Invite.
Setting the permissions for the new user in Google Tag Manager

Setting permissions for the new user, then sending the invite.

The invited user receives an email and appears in your user list once they accept.

Grant access at the container level

Use this when you want to share a single container without giving access to the rest of the account.
1

Open the Admin tab

Go to tagmanager.google.com, sign in, and open the Admin tab for the container you want to share.
2

Open User Management

In the Container column, click User Management.
User Management under the container level in Google Tag Manager

User Management under the Container column.

3

Add a new user

Click the blue + button in the top-right corner, then choose Add users.
Add a user to Google Tag Manager on the container level

Adding a user at the container level.

4

Set container permissions and invite

Enter the email address, select the container permission level (Read, Edit, Approve, or Publish), then click Invite.
Setting the container-level permissions for the new user in Google Tag Manager

Setting container-level permissions for the new user.

Edit or remove access

To change or revoke access later, open User Management at the account or container level, click the user (or the three-dot menu next to them), and update their permission level or remove them entirely.
Google Tag Manager has no “request access” flow — a partner cannot ask to join your account. The account owner must always send the invitation using the steps above.

What TryRoki needs

Once you have invited us, share the account with the email you were given and grant Publish on the container for your website. That is enough for TryRoki to manage your tags end to end. If anything looks unclear, reach out at seo@tryroki.com and we will confirm the exact permissions we need.