Share via


Default Groups

When a team project collection is created, the following default collection-level groups are created. You can use these default collection-level groups to organize and manage users and service accounts that require permissions at the collection level.

Group

Permissions

Project Collection Administrators

Members of this group can perform all operations within a team project collection.

Project Collection Valid Users

Members of this group have access to the team project collection. You cannot manually add or remove users or groups from this group.

Project Collection Service Accounts

Members of this group are the service accounts used by the team project collection. This group should not contain any user accounts.

Project Collection Build Service Accounts

Members of this group are the service accounts used for creating and running builds on build computers. This group should not contain any user accounts.

Project Collection Proxy Service Accounts

Members of this group have proxy service permissions for the collection. This group should contain only service accounts and groups that contain only service accounts.

Project Collection Test Service Accounts

Members of this group have test service permissions for the collection. This group should contain only service accounts and groups that contain only service accounts.

When you create a team project, Team Foundation creates the following default project-level groups.

Group

Permissions

Project Administrators   

Members of this group can manage all aspects of the team project.

Readers

Members of this group can see information about the team project (read access).

Contributors

Members of this group can modify the team project (read and write access).

Builders

Members of this group can create and modify builds.

You can use these default project-level groups to control permissions for team project members.

In This Section

See Also

Tasks

Change Permissions for a Group or User

Add Users to Team Projects