Groundeddocs

The admin portal

A tour of the admin portal for platform admins and auditors, and what each role can and can't do there.

The admin portal (/admin) is where platform admins run the install and platform auditors review it. People with either role get a Workspace / Admin switch at the top of the sidebar. Workspace is the ordinary experience; Admin shows only platform pages. Each side remembers the last page you visited in that browser tab.

No content access by default

Neither role can read a team's documents or anyone's conversations. The admin portal shows settings, metadata, usage and logs. A platform admin who needs to read a team's content opens an audited, time-limited break-glass session, and the team's owners are told.

Who can do what

Platform adminPlatform auditor
See every admin pageYesYes, read-only (a "Read-only" badge in the top bar)
Change settings, create teams, manage modelsYesNo
Place legal holds, open break-glass sessionsYesNo, but can see them
Read team contentOnly under break-glassNever

The first platform admin is set by configuration (First platform admin). After that, admins grant platform roles under People → Users. The last active platform admin can't be demoted or suspended.

Overview

The admin portal opens on Overview:

  1. Platform at a glance: teams, people, agents, documents and answers, compared with the week before. A new install also gets a Set up this install checklist: add a connection and models, embedding profiles, moderation, and the first team.
  2. Needs attention, beside Features. Needs attention lists what an admin should act on: domain requests, teams near or over budget, documents that failed to index, keys still on a previous pepper, and configuration warnings such as an empty crawl allowlist or no email. Features lists each optional feature with its state.
  3. Recent changes: the last five audit entries, with All logs.
Admin Overview: the platform at a glance, Needs attention, and the Features card listing each optional feature's state, with recent changes.

The sidebar

The admin sidebar has Overview and seven groups. Only Overview and the group of the page you're on open by themselves; other groups stay as you left them.

GroupPages
PeopleUsers, Teams, SSO groups
ContentShared sources, Agents, Crawl domains, Parsing & OCR
ModelsConnections, Models, Embedding profiles (Profiles · Migrations), SystemOne
Usage & spendAnalytics, Costs, Limits
SafetyClassifications, Moderation, Public access
RecordsLogs, Retention (Periods · Dry run · Runs · Legal holds), Break-glass
OperationsMaintenance

The command palette (⌘K or Ctrl+K) finds admin pages and, for platform staff, teams, users, models, connections, embedding profiles and shared sources by name. It never returns another team's content.

On a phone (below 600 px wide) the sidebar is a drawer opened from the top bar.

Conventions

  • Records open as pages over their list (a model, a connection, an audit entry, a hold), with a back link. Each can be linked to.
  • Changes are audited with before and after values, and most admin writes use revision checks: if another admin saved first, you're asked to reload rather than overwriting their change.
  • Moved pages keep their old addresses as redirects, for example /admin/legal-holds and /admin/profile-migrations.

On this page