Demonstration configuration — no runtime enforcement or live integrations are connected.
⌘K
Access
Roles & Permissions
Neutral role templates. Membership assignment is not shown in this demonstration.
| Role | Scope | Permissions | Type |
|---|---|---|---|
Organisation Administrator Full administrative control over the organisation. | Global | 42 | Template |
Finance Owner Owns the finance department mandate, assistants and integrations. | Department | 24 | Template |
Department Manager Manages a single department's mandate, assistants and integrations. | Department | 22 | Template |
System Assistant Machine identity used by governed assistants for read-only actions. | Workspace | 6 | Template |
Permission catalogue
Composable, versioned permission keys.
assistants.readReadView assistant profiles and configuration.
assistants.operateOperateRun assistants within their mandate (requires runtime).
mandates.editEditModify mandate content prior to review.
mandates.approveApproveApprove mandate versions.
integrations.connectConnectAuthorise a new integration.
audit.exportExportExport audit events for external systems.
governance.policies.writeWriteAuthor governance policies.
members.inviteInviteInvite users to a workspace.