Administration
Roles
| Role | Can |
|---|---|
admin | Everything in the workspace, including users, billing, settings |
engineer | Create and edit all engineering data, approve changes |
reviewer | Review and approve, limited editing |
viewer | Read-only |
guest | Minimal read access |
supplier | Portal only — see supplier portal; never mixes with staff access |
Users & audit
- Admin → Users — invite teammates, change roles, deactivate accounts. Supplier logins are managed from each supplier's page instead and never appear here.
- Admin → Audit Log — every material action (creates, state changes, approvals, downloads, sign-ins) with actor, entity and timestamp.
Plans
| Plan | Seats | Storage | Changes/mo | Extras |
|---|---|---|---|---|
| community | 3 | 1 GB | 10 | — |
| pro | 25 | 100 GB | unlimited | advanced workflows, bulk import |
| business | 100 | 1 TB | unlimited | + SSO, supplier portal, quality module |
| enterprise | unlimited | unlimited | unlimited | + custom integrations |
Limits are enforced server-side and fail closed. Supplier portal logins are free — they don't consume seats.
Workspace settings
Admin → Settings — rename the workspace, see the slug, plan and usage, and jump to billing.
Platform operations
Operators listed in the deployment's PLATFORM_ADMIN_EMAILS get an extra
Platform Admin area: every tenant with usage statistics, plan overrides,
suspend / reactivate / delete, a system-health dashboard and a global cross-tenant
audit log. Suspending a tenant blocks sign-ins and kills its sessions within minutes.