Agencies running 50–500+ anti-detect profiles fail when client boundaries blur — one operator launches wrong profile, exports cookies to shared drive, or reuses proxy across verticals. Multilogin workspaces plus naming discipline fix governance without slowing ops.

Workspace structure

LevelPurposeExample
WorkspaceClient legal boundaryclient_acme_eu
FolderCampaign or geo splitfb_ads_de, scraping_us
ProfileSingle identityacme_de_bm3_prod
TagAutomation metadatatier=warm, proxy=resi_de

Role matrix

Profile pool tiers

  1. Warm — light browsing, not on critical ad spend
  2. Production — live BM/ad accounts, sticky proxy locked
  3. Burn — flagged/disabled, quarantined from API pools

Integrate with scaling guide queue — never auto-launch burn tier.

Client offboarding

  1. Revoke all member access same day
  2. Export profile list + proxy map for client handoff if contracted
  3. Rotate API tokens used by automation
  4. Archive workspace — do not reuse profiles for new client (cookie history risk)

Related

FAQ

One account for all clients?
Use workspace isolation and roles — never shared operator without ACLs.
Profiles per operator?
Cap manual concurrent launches; scale via API workers.

Disclosure: MLX-MMO affiliated with Multilogin. SAAS50 / MIN50.