Not built yetPRD §5.10, §5.11.2

Tenant admin

Where a tenant administrator configures the bot: who may use it, what it may touch, and what it may write.

  • Users, roles, and invitations — six roles from owner down to auditor
  • Validation policy: password / OTP / SSO / LDAP / custom webhook, plus IP, session, and step-up rules
  • Attribute-based access control mapping IdP claims to data scopes
  • Write actions: define, dry-run, and publish schema-validated writes into tenant systems
  • Approvals queue for pending write-backs and high-risk tool calls
  • Branding, bot persona, confidence threshold, auto-learn toggle, escalation routing
  • Analytics and the exportable audit log

Requirements for this screen are in PRD.mdPRD §5.10, §5.11.2.