Platform admin
ADMIN — full control of the platform: people, providers, models, governance and security. You can act in any organization or team.
Where you work: Everything, including Management → Approvals, Users, Organizations, Access & Tiers and Audit.
1. Manage people
Users: invite users, set platform roles (ADMIN, ADMIN_VIEWER, USER, USER_VIEWER) and suspend accounts. Create organizations and assign org admins under Organizations so day-to-day approvals happen close to the teams.
2. Configure providers and models
Models: add provider credentials (AES-256-GCM encrypted, or akv: Azure Key Vault references), create model deployments with weights, pricing and fallback chains. Group deployments into access groups and define budget tiers under Access & Tiers.
3. Govern spend
Set budgets at any level, grant temporary budget increases and configure soft-alert thresholds on Budgets. Use Tags for cost centers and Customers for end-user attribution and per-customer limits.
4. Audit and logs
Audit records every portal mutation with actor and before/after. Request Logs is platform-wide for you; payload capture is opt-in under Settings → Platform.
5. Security operations
Settings → Encryption & secrets holds the master-key rotation runbook. Blocking a user, key, application or customer takes effect on the gateway immediately.
Good to know
Grant ADMIN sparingly — ADMIN_VIEWER covers oversight without write access.