Skip to main content

Administrators

Manage the administrators who have access to your Containment.AI dashboard, control their permissions, and invite new team members.

Accessing Administrators

  1. Go to Settings
  2. Click the Administrators tab
  3. View and manage administrators and their permissions

Admin List

The admin list shows:

ColumnDescription
AdministratorAdmin's display name
EmailWork email address
RoleAssigned roles/permissions
StatusInvitation and account status
JoinedWhen the admin joined
ActionsOpen the detail drawer

Inviting Admins

Send Invitation

  1. Click Invite Admin
  2. Enter the email address
  3. Select the role or granular permissions
  4. Send the invitation

Invitation Status

StatusDescription
PendingInvitation sent, awaiting action
AcceptedAdmin completed setup
ExpiredNo action after 7 days (default)

Roles and Permissions

Access is permission-based. An administrator holds either a high-level role or a set of granular permissions.

High-Level Roles

RoleCapabilities
Organization ownerFull access
AdministratorFull administrative access

Selecting a high-level role replaces any granular permissions.

Granular Permissions

Instead of a high-level role, an admin can hold one or more granular permissions:

PermissionGrants
Billing managerView and manage billing
Policy administratorCreate, edit, and manage policies
Policy viewerView policies (read-only)
Alert administratorManage and resolve alerts
Alert viewerView alerts (read-only)
Audit viewerView audit logs and activity
Integration managerManage integration configuration

Team-scoped variants (team administrator, team policy administrator, team alert viewer) exist for organizations using teams.

note

Custom role creation (defining your own named roles) is a roadmap capability and is not in the product today. Use the granular permissions above to compose least-privilege access.

Managing Admins

Edit Roles

  1. Click an admin's row to open their detail drawer
  2. Add or remove roles and granular permissions
  3. Click Save changes

Notes:

  • You cannot modify your own roles
  • Only admins with permission management rights can edit roles

View an Admin's Activity

From the detail drawer, click View activity to open the Activity page filtered to that administrator's actions.

Admin Activity

View admin actions:

  1. Go to Activity
  2. Filter by actor
  3. Review configuration changes, alert management, and user actions

Security

Multi-Factor Authentication

MFA enforcement is designed to arrive with enterprise SSO (enforced through your identity provider). SSO is a roadmap capability delivered per engagement — see SSO.

Troubleshooting

Admin Can't Sign In

  1. Check the admin's status in the list
  2. Verify the email address
  3. Try a password reset

Wrong Permissions

  1. Open the admin's detail drawer
  2. Review assigned roles and granular permissions
  3. Contact an organization owner or administrator if changes are needed

Invitation Not Received

  1. Check the spam folder
  2. Verify the email address
  3. Send a new invitation

Best Practices

Least Privilege

  • Assign minimal necessary permissions
  • Prefer viewer-level permissions when appropriate
  • Review permissions regularly

Access Reviews

  • Audit the admin list quarterly
  • Remove access that is no longer needed
  • Verify role appropriateness