Relevant Concepts

Last Updated At: 2025-10-21 09:10:00

This document introduces the main concepts of Cloud Organization. You can quickly obtain relevant information through the following content.
The following figure illustrates a basic cloud organization containing 10 accounts, which are grouped into four departments under the root. You can refer to the following content of this document to understand the items in the figure.

Root

A root is the parent container of all accounts in an organization.

Organization

You can create organizations to sort out the hierarchical relationships between cloud accounts. You can centrally view and manage all accounts in your organization in the Cloud Organization console. An organization has one admin account and multiple member accounts. You can organize these accounts in a hierarchical tree structure, with the root at the tree top and departments nested under the root node. Each account can be placed directly under the root node or in a department of the hierarchy.

Department

A department is a node used to store accounts under the root node and can contain other departments. This enables you to create a hierarchy similar to a reverse tree with the root node at the top, departments extending downward, and accounts at the bottom.

Account

An account is a standard cloud account that contains your cloud resources.

  • Admin account: The creator of an organization is the organization's admin account. One organization can have only one admin account.
  • Member account: Member accounts are other accounts than the admin account in an organization. The organization administrator can create accounts or invite other existing accounts to join the organization, remove accounts from the organization, manage invitations, and apply policies to entities like the root, departments, or accounts in the organization. One account can join only one organization.

Organization Invitation

Invitation is the process of inviting another account to join your organization. An invitation can be sent only by the root account and can be extended to account IDs associated with the invitee account. After the invitee account accepts the invitation, it will become a member account in the organization.