Step 2: Add people to the subscription

A Data Studio Pro subscription can include specific users as well as Google Groups.

Add users from other organizations

You can enable the Trusted Orgs feature to add users from other organizations to your Pro subscription. This feature is limited to self-service subscriptions and does not work for org-wide (Monthly Active User) subscriptions.

Prerequisites

Before users from other organizations can successfully access data sources (like BigQuery) within Data Studio reports, you must ensure that they can be granted the necessary Google Cloud IAM permissions.

The Google Cloud Domain Restricted Sharing organization policy (constraints/iam.allowedPolicyMemberDomains) can prevent adding users from external domains to IAM roles if their organization isn't on the allowed list. This will block data access even if the organization is added as "Trusted" in Data Studio Pro.

Your Google Cloud Organization Administrator must do the following:

  1. Check if the constraints/iam.allowedPolicyMemberDomains policy is active. You can manage organization policies in the Google Cloud console under IAM & Admin > Organization Policies.
  2. If the policy is active, add the Google Workspace Customer ID(s) of the organizations that you intend to trust to the policy's allowed values.

Enable Trusted Orgs

To enable the Trusted Orgs feature, follow these steps: 

  • Subscribe to Data Studio Pro.
  • Obtain a valid support contract.
  • Submit a request to Cloud Customer Care to enable the Trusted Orgs feature. In your request, you must include the following for each organization that you want to trust:
    • The organization's primary domain name
    • The organization's numeric Google Cloud Organization ID

The Trusted Orgs feature can't be disabled after it is enabled.

Add specific users and groups

To add an individual user to the Data Studio Pro subscription, enter their email address. To add a team, enter a Google Group alias. Each Pro user must be a Google Workspace or Cloud Identity user with a Managed Google Account to subscribe to or use Data Studio Pro.

You must have the proper permissions to view a group's members to add that group. However, you don't need to be a member of the group. See the Set permissions for managing members and content article for more information.

Limitations

When you're adding users and groups to the Data Studio Pro subscription, you need to be aware of the following limitations:

  • You can assign licenses only to managed Google Accounts belonging to the same organization as the Google Cloud project used for Data Studio Pro. Users from outside your organization can't be included in the subscription, unless the Trusted Orgs feature is enabled. Any external users in a Google Group are excluded from the subscription. Even when Trusted Orgs is enabled, cross-organizational subscription assignment is restricted to individual user accounts; Google Groups from outside of your organization are not supported.
  • Google Cloud users aren't automatically included in your Pro subscription. If you've already assigned users to the Google Cloud project associated with Data Studio, those users won't automatically be added to the Pro subscription. You'll need to add each user or Google Group individually, or you can add your entire organization to the subscription.
  • Adding identity mapped groups is not supported. Make sure to add only users or Google Groups.

Add everyone in your organization's domain

You can buy individual Pro licenses for everyone in your organization by selecting Add everyone in your organization's domain.

Troubleshoot "Enter a valid email address" error

When you assign licenses in the Google Cloud console, you might see an Enter a valid email address error even when you provide a valid email address for a user in your organization. This situation typically occurs if you lack sufficient Group View Permission in the Google Admin console.

To resolve this issue, use one of the following options:

  • Assign licenses in Data Studio: Assign users directly through the Data Studio interface at datastudio.google.com. In the navigation panel, select Pro subscription to manage license assignments.
  • Update permissions in the Google Admin console: Ask your Workspace administrator to grant you organization-wide permissions to view all members.
  • Use a Google Group: Create a Google Group for the users to whom you want to assign licenses. Ensure that you have Viewer permissions for that group and then assign the license to the group in the Google Cloud console.