API DB WS Up –
PROD UI vc4f4970-20260329-192621 API vc4f4970

Security

Visible posture, token controls, and policy guidance for live demos and operations.

Access Policy Matrix

Policy baseline for MVP demos and client-facing operations.

RoleViewOperateDestructiveNotes
ViewerRead dashboards/status/logsNoNoSafe read-only mode for stakeholders.
OperatorFull read accessRun jobs, assign tasks, start/stop loopsLimitedIntended for daily operations and agent supervision.
AdminFull read accessAll operator actionsYesToken/session controls, deploy-capable actions, security changes.

Node permissions

  • Node jobs are scoped by assigned node id and task zone guardrails.
  • Node bearer token is required unless legacy mode is explicitly enabled.
  • Revoking a node token forces re-registration with a fresh bearer token.
  • Deploy actions should run only from approved operator/admin contexts.