Administration
Manage your organization, users, and security
Manage your Arcanflows organization, users, and security settings.
Administration Overview
The administration section allows you to:
- Manage users and teams
- Configure roles and permissions
- Set up security policies
- Monitor system activity
- Configure organization settings
User Management
Inviting Users
- Go to Settings > Users
- Click Invite User
- Enter email address and select role
- User receives invitation email
- User creates account and joins your organization
User Roles
Arcanflows provides predefined roles:
| Role | Description | Key Permissions |
|---|---|---|
| Tenant Admin | Full access | All operations |
| Agent Developer | Build & deploy | Create agents, workflows, forms |
| Agent User | Use agents | Chat, view results |
| Viewer | Read-only | View dashboards, logs |
Deactivating Users
- Go to Settings > Users
- Find the user to deactivate
- Click the actions menu (...)
- Select Deactivate
Deactivated users cannot log in but their data is preserved.
Team Management
Creating Teams
Organize users into teams for better collaboration:
- Go to Settings > Teams
- Click Create Team
- Enter team name and description
- Add team members
- Assign team permissions
Team Permissions
Teams can be granted access to:
- Specific agents
- Specific workflows
- Specific forms
- Specific credentials
Security Settings
API Key Management
Manage API keys for programmatic access:
- Go to Settings > API Keys
- Click Create API Key
- Name the key and select scopes
- Copy and securely store the key
Best Practices:
- Use descriptive names
- Grant minimum required permissions
- Rotate keys periodically
- Delete unused keys
Credentials Vault
Securely store third-party credentials:
- API keys for external services
- OAuth tokens
- Database connection strings
- SMTP credentials
All credentials are encrypted with AES-256.
Audit Logs
Monitor all system activity:
- Go to Activity > Audit Logs
- Filter by user, action, or date
- Export logs for compliance
Logged events include:
- User logins
- Resource creation/modification
- API key usage
- Credential access
Organization Settings
General Settings
Configure organization-wide settings:
- Organization name
- Default timezone
- Date format preferences
- Email notification settings
Branding (Enterprise)
Customize the interface with your brand:
- Logo
- Colors
- Custom domain
- Email templates
Data Retention
Configure how long data is kept:
- Conversation logs
- Execution history
- Audit logs
- Deleted resources
Security Best Practices
Access Control
-
Principle of Least Privilege
- Grant minimum required permissions
- Use specific roles rather than admin
-
Regular Review
- Audit user access quarterly
- Remove inactive users
- Rotate API keys annually
-
Multi-Factor Authentication
- Require MFA for all users
- Use TOTP or hardware keys
Data Protection
-
Credential Security
- Use the credentials vault
- Never hardcode secrets
- Rotate credentials regularly
-
Network Security
- IP allowlisting (Enterprise)
- VPN integration (Enterprise)
-
Compliance
- Regular security audits
- SOC 2 compliance (Enterprise)
- GDPR tools available
Monitoring & Alerts
System Health
Monitor platform health:
- API response times
- Error rates
- Resource utilization
- Service status
Usage Metrics
Track organization usage:
- Active users
- Messages processed
- Workflow executions
- Storage used
Alerting
Configure alerts for:
- Error rate thresholds
- Usage limits approaching
- Security events
- System issues
Enterprise Features
Enterprise plans include additional administration features:
- SSO Integration: Okta, Azure AD, SAML
- Custom Domains: Use your own domain
- Advanced Audit: Extended log retention
- Compliance: SOC 2, HIPAA support
- Support: Dedicated account manager
- SLA: Guaranteed uptime
Next Steps
- User Management - Manage users in detail
- Roles & Permissions - Configure access control
- Security - Set up security policies
- Audit Logs - Monitor activity