Administration
The administration console is where people get access, roles are defined, delivery channels are configured, and the system's health is watched.
Only people with system administration access can open Administration. Each page inside also needs its own permission, so the console can be shared between several administrators with different responsibilities.
The console at a glance
Overview
System health: users, active projects, background services, and recent notification volume. Shows healthy or needs attention.
Users
The people directory: accounts, status, passwords, roles, and exceptions.
Roles
Reusable permission packs and the full permission catalog.
Notifications
Email, browser push, and WhatsApp delivery, with a test-message button.
Operations
Background workers, queues, schedules, and incidents.
Progress
Rules for XP, daily caps, excluded projects, and the leaderboard.
Project-specific matters such as ERP connections, budgets, and stage decisions are managed inside each project, not in the console.
Manage users
- Create the accountAdd the person's name and email and set their status.
- Set a passwordSet an initial password, or reset a forgotten one. Passwords need at least 14 characters.
- Assign rolesGive the person one or more roles. This is the normal way to grant access.
- Add exceptions only when neededA direct allow or deny handles a true one-off case. Keep these rare.
Disabling a user stops them signing in, but their history on projects stays intact.
The user hub
Open any person to see their hub for a chosen week, month, or custom range of up to a year.
| Section | What you see |
|---|---|
| Overview | Items that need attention, plus a Progress panel with level, XP, recent awards, and whether tracking is on. |
| Work | Items where they are assignee or reporter: open, overdue, and due soon, grouped by project and status. |
| Time | Recorded time, billable time, totals per project, timer versus manual entries, and whether a timer is running now. |
| Access | Roles and direct exceptions. You can also add the person to projects here. |
| Activity | Their actions on work, projects, and documents. |
How permissions work
Access is built from small, specific permissions, such as "read financials" or "approve change requests". A role is a named bundle of permissions. Give people roles, and they get exactly what the role includes.
Signed in
A valid, revocable session.
Permission
The action is allowed by the person's roles.
Project access
The person belongs to the project, or has a grant for it.
Data protection
The database itself refuses data the person may not see.
- Read and write are separate. Someone may open the Timeline but not move dates, or see Financials but not change them.
- Hiding a button is not security. Every action is checked on the server, whatever the screen shows.
- Labels are not permissions. Being named on the project board or listed as a stakeholder does not grant access.
- New permissions grant nothing until a role or a person is given them.
Build a role
Under Roles, create a custom role by selecting permissions from the catalog. System and protected roles are locked to keep the basics safe. A few common shapes:
| Example role | Typical access |
|---|---|
| Team member | Read and update work items. No access to finance. |
| Finance owner | Read financials and, where appropriate, manage budgets and costs. |
| Change approver | Approve change requests. Give this only to people with real authority. |
| Stage decision maker | Record go / no-go at stage gates. |
After changing a role, sign in as a test user with that role, or ask the person, and confirm that the menus and project tabs match what you intended.
Notification delivery
Under Notifications, set up the providers used to deliver alerts: Email (SMTP), browser push, and WhatsApp. Secrets are sealed once saved and are never shown again. Use Send test to confirm each channel works.
Operations
Operations shows the background work that keeps the app running: workers, queues, schedules, and incidents. Notifications and automations run here. If alerts are delayed or a schedule is late, start here.
Progress settings
Turn XP tracking on or off, and set the daily cap, the point table, the reopen window, the excluded projects, and the leaderboard. Turning scoring off doesn't change any project work, and past awards are kept.