Skip to main content

Corporate Admin Guide

Everything you need to manage your organisation’s Orchard72 corporate benefit programme. Invite employees, monitor engagement, and keep your programme running smoothly.

Last reviewed

Inviting Employees

There are multiple ways to invite employees to your corporate benefit programme. Choose the method that works best for your organisation.

Email Invitations

  1. Open the Invite pageUnder Corporate Dashboard in the sidebar, choose Invite. It sits alongside Employees, and the Employees list also has an Invite employees button.
  2. Enter employee email addressesPaste one address or many, separated by commas, semicolons or new lines. To record an employee ID from your HR system, put it after the address on the same line, separated by a comma (alice@company.com, EMP-001). The Invite page tells you the maximum a single batch accepts. Employees receive an invitation email with a link to activate their benefit.
  3. Track invitation statusThe Employees list shows each person as Invited, Expired, Active or Deactivated, and can be filtered by Invited, Active or Deactivated.

Domain-Based Auto-Enrolment

Configure your organisation's email domains in Settings. Any new user who registers with a matching email domain will automatically be prompted to activate the corporate benefit.

Once you have set at least one domain, invitations to addresses outside it are rejected, so keep the list complete.

Expiry and Resending

Invitations expire a set number of days after they are sent, and each link is tied to the address you invited, so it cannot be forwarded to a colleague. Resending an invitation restarts that window.

CSV Import

  1. Prepare the fileSave a CSV with an email column and, optionally, department and employee_id columns. A file can hold up to 500 rows.
  2. Upload it on the Invite pageUse Import from CSV on the Invite page. The file is checked first: you see how many rows are ready and every problem listed by row number, such as an invalid or repeated address, before anyone is invited.
  3. Confirm the importChoose Invite to send invitations to the valid rows. Rows refused at this point, for example because your programme has no seats left, are listed by row number too, so you can fix them and import them again.

Exporting your employee list

The Employees page has an Export CSV button that downloads the full list, with the same email, department and employee ID columns the CSV import reads.

Reading Usage Reports

The corporate dashboard provides aggregate usage statistics to help you understand programme engagement. Usage figures are anonymised, so you never see which employee did what.

Available Reports

  • Overview: active employees against your licensed seats and the percentage used, plus counts of wills started, wills completed, documents uploaded, video messages recorded and legal reviews booked
  • Trends: new activations, deactivations and the running active total by calendar month, over the most recent months
  • Adoption: which features employees are using, with an adoption percentage for each
  • Employee List: each employee’s work email, department, employee ID and status (Invited, Expired, Active, Deactivated), with the same columns available as a CSV export

Privacy Protection

Your employer sees only aggregate programme statistics (e.g., ‘89 employees completed a will’). Individual activity is never shared. When only a small number of employees use a feature, the count is suppressed to prevent identification. Usage figures on the Overview page are hidden altogether until enough employees have activated their account.

Who can see which report

Overview, Trends and Adoption are open to Owner, Admin and Viewer roles. The Employees list, Invite page and audit log are Owner and Admin only, Billing is Owner and Billing only, and Settings and Team are Owner only.

Managing Email Domains

Email domains control which users can be automatically recognised as employees, and which addresses you are allowed to invite. Manage your domains in Settings under Corporate Dashboard. Only the account Owner can change them.

Adding a Domain

Add your organisation's email domains (e.g. “company.co.uk”) to enable automatic employee recognition. When a user registers or signs in with a matching domain, they'll be offered the corporate benefit.

Removing a Domain

Removing a domain does not affect existing employees who have already activated their benefit. It prevents new users with that domain from being auto-recognised, and stops you inviting new addresses at that domain.

Offboarding Employees

When an employee leaves your organisation, you can deactivate their corporate benefit from the Employees list.

What Happens When You Deactivate

  • The employee loses access to corporate-tier features
  • Their account, will, and documents are NOT affected
  • They can continue using Orchard72 with a personal subscription or free tier
  • If they had a previous personal subscription, it resumes automatically and they are emailed to say so
  • You cannot access or delete any of their will, documents or account data
  • Their row stays on your Employees list marked Deactivated, so the seat is released and the history is preserved

Reactivating Someone Who Rejoins

A deactivated employee can be reactivated from the same list, provided your contract has not expired and you have a seat free. Reactivation starts a fresh corporate subscription and pauses any personal subscription again.

When the Contract Ends

If your corporate contract reaches its end date, every remaining active employee is deactivated in the same way. Nobody loses data, and anyone with a paused personal subscription has it resumed.

Important

Deactivating an employee's benefit does not delete their account or data. Employee data belongs to the employee, not the organisation.

Automatic Provisioning with SCIM

If your organisation manages people in an identity provider such as Okta or Microsoft Entra ID, you can connect it with SCIM 2.0 so that seats follow your directory instead of being invited by hand.

Connecting Your Identity Provider

  1. Open SettingsUnder Corporate Dashboard in the sidebar, choose Settings and find the SCIM provisioning card.
  2. Create a tokenGive the token a name you will recognise, such as the name of your identity provider, and choose Create token. Copy the token straight away: it is shown once and cannot be retrieved later.
  3. Configure your identity providerIn your identity provider, add a SCIM application using the SCIM base URL shown on the card and the token as the bearer token, then assign the people who should hold a seat.

What Provisioning Does

  • Assigning someone in your identity provider invites them to activate their corporate benefit
  • Unassigning or suspending someone deactivates their seat, exactly as deactivating them from the Employees list does
  • Their account, will and documents are never deleted by provisioning, because they belong to the employee
  • Groups pushed from your identity provider are kept in step, and where seat groups are set up for single sign on, membership of those groups decides who holds a seat

Revoking a token

Revoke a token from the same card if it may have been exposed or you stop using that identity provider. Provisioning with it stops at once, and seats it has already assigned are kept. The card shows how many tokens you can hold at the same time.

Reporting API

If you want your own HR or reporting tools to read your programme figures without anyone logging in, create a reporting API key. A key reads only what you choose when you create it, and no key can ever read an employee’s will, documents or estate plan.

Creating a Key

  1. Open SettingsUnder Corporate Dashboard in the sidebar, choose Settings and find the API access card. Only programme owners can create keys.
  2. Choose what the key can readTick programme reporting, the employee roster, or both. You can also set an expiry in days; leave it blank for a key that lasts until you revoke it.
  3. Copy the keyName the key and choose Create key. Copy it straight away into your system: it is shown once and cannot be retrieved later.

What a Key Can Read

  • Programme reporting: overview, trends and feature adoption, with small groups suppressed exactly as on your dashboard, plus your invoices
  • Employee roster: the work email, department and employee ID you provided, each seat’s status, and its invitation, activation and deactivation dates
  • Send the key as a bearer token (Authorization: Bearer followed by the key) to the endpoints under /api/v1/corporate/ext/: overview/, trends/, feature-adoption/, roster/ and invoices/
  • The roster is paged and can be read incrementally with updated_since, so a nightly sync fetches only the seats that changed

Keeping keys safe

Keep a key on your own servers and never in a web page or app. Revoke it from the same card if it may have been exposed or you stop using that system; it stops working at once. The card shows how many keys you can hold at the same time.

Privacy Model

The corporate programme is designed with employee privacy as a core principle. As a programme administrator, you should be aware of the following:

  • You have NO access to employee wills, documents, video messages or estate details
  • You do see the administrative record you supplied: each employee’s work email, the email on their account, their department and employee ID, and their status
  • Usage reports show only aggregate, anonymised statistics, never who did what
  • Overview usage figures stay hidden until enough employees have activated, and small adoption counts are suppressed rather than shown
  • Employees can contact support independently, and you won’t be notified
  • Data remains with the employee if they leave the organisation

Administrative actions such as inviting, deactivating and reactivating an employee are written to an audit log that Owner and Admin roles can read, and that record names the employee.

If you need assistance with your programme, contact your dedicated account manager. Their details are available on the Corporate Settings page.

Can’t find what you’re looking for?

Our support team is here to help. Contact us and we’ll get back to you as soon as possible.

Contact Support

We use cookies to improve your experience. See our Cookie Policy (opens in a new tab) for details.