Screens and menus
Every Platform and Apps menu entry and screen: where to find it, what it is for, what its list shows and which permission it needs.
On this page (17)
Platform > OverviewPlatform > PackagesPackages > open a packageExtensions > open an extensionPlatform > ReleasesReleases > open a releaseEnvironments > open an environmentPlatform > OperationsScheduled jobs > open a jobJob runs > open a runRestore drills > open a drillPlatform > ReportingPlatform > ConfigurationRelease policies > open a policyAlert policies > open a policyFeature flags > open a flagBills of materials > open an SBOM
Platform > Overview
Overview
- What it is for
- One page of platform health: packages, releases in flight, jobs, alerts, backups, flags, extensions
- List: columns and filters
- Banner: server tier (Production / Staging / ...) + current environment code, 'Outgoing mail and webhooks off', 'Schema is not at this build's head'. 9 tiles: Packages awaiting review, Drifted packages, Releases in flight, Jobs queued, Dead letters, Open alerts, Last good backup (h), Flags waiting for approval, Active extensions. Cards: Releases in flight, Environments, Open alerts, Recovery and workload (last drill, queue lag, p95/p99, server errors)
- Buttons and actions
- Each tile opens its list; a release / environment row opens that record
- Permission needed
- Any platform role (read); a person with no platform role sees only the Capabilities list and a note
Platform > Packages
Packages
- What it is for
- The package registry: one row per module version, with licence, digest and dependencies
- List: columns and filters
- Code, Version, Title, Status, Licence, Support owner, Needs, Digest (a warning mark when drifted); hidden: Kind, Source, Updated. Search code/title; filter status, licence, kind, source; server paging
- Buttons and actions
- Register a package; Sync from this build; open a row
- Permission needed
- Any platform role (read); operator to register or sync
Extensions
- What it is for
- Customer extensions registered on published hook points
- List: columns and filters
- Namespace, Hook, Name, Status, Calls, Failures
- Buttons and actions
- New; open a row
- Permission needed
- Any platform role (read); operator to register
Packages > open a package
Package record
- What it is for
- One version of one package and its lifecycle Draft > Reviewed > Certified > Retired
- List: columns and filters
- Tabs: Details, Review checks (draft/reviewed only), Versions and use (versions, needed by, releases), History. Smart buttons: Dependencies, Needed by, Digest
- Buttons and actions
- Edit/Save/Discard (draft, operator); Licence review (approver); Review (release manager); Certify, Send back (approver); Retire (configuration owner)
- Permission needed
- operator / release_manager / approver / config_owner per step
Extensions > open an extension
Extension record
- What it is for
- One registration: namespace, hook point, its own fields, core range, function; Draft > Reviewed > Active (> Disabled)
- List: columns and filters
- Tabs: Details, Checks (what stops activation; not shown when active), History
- Buttons and actions
- Edit (draft, operator); Review (release manager); Activate (approver, not the registrar); Disable (operator); Back to draft (configuration owner)
- Permission needed
- operator / release_manager / approver / config_owner
Platform > Releases
Releases
- What it is for
- Every release (set of reviewed package versions going to one environment)
- List: columns and filters
- Number (REL-0001...), Title, Environment, Status, Packages, Approved by, Signed, Activated; hidden Updated. Search number/title; filter status; paging
- Buttons and actions
- New; open a row
- Permission needed
- Any platform role (read); operator to create
Environments
- What it is for
- Development / staging / production / recovery targets with RPO, RTO and maintenance window
- List: columns and filters
- Code, Name, Tier, Status, Active release, Migration head, RPO, RTO, This server
- Buttons and actions
- New; open a row
- Permission needed
- Any platform role (read); configuration owner to create
Releases > open a release
Release record
- What it is for
- One release through Draft > Reviewed > Staged > Approved > Active > Retired, with its gates and evidence
- List: columns and filters
- Tabs: Details, Packages (pick reviewed/certified versions), Gates ('Before <next step>' readiness + recorded gates), Evidence (SBOM, upgrade rehearsals, approvals, signed manifest and provenance), History. Smart: Packages, Gates failing, Approvals n/N
- Buttons and actions
- Edit; Save packages; Take and attach an SBOM; Rehearse the upgrade on a restored copy; Submit; Stage; Approve; Activate; Recover; Retire; Send back; Cancel
- Permission needed
- operator (create, edit, submit, activate, recover), release_manager (stage, cancel), approver (approve, send back), config_owner (retire)
Environments > open an environment
Environment record
- What it is for
- One environment: In review > Approved > Deployed (> Archived)
- List: columns and filters
- Tabs: Details, Releases, Approved versions (snapshot of each approval), History. Smart: Active release, Window Open/Closed
- Buttons and actions
- Edit (in review, configuration owner); Approve (approver, not the creator); Mark deployed (operator); Back to review, Archive (configuration owner)
- Permission needed
- config_owner / approver / operator
Platform > Operations
Scheduled jobs
- What it is for
- Background job definitions (the shared job engine) including the 7 platform jobs
- List: columns and filters
- Code, Name, Status, Schedule, Next due, Queued, Dead, Accepted
- Buttons and actions
- New; open a row
- Permission needed
- Any platform role (read); configuration owner to create
Job runs
- What it is for
- Every run the engine accepted
- List: columns and filters
- Job, Run key, Status, Trigger, Attempts, Queued, Age, Took, Error; hidden Correlation. Filter status/job/trigger/error; paging
- Buttons and actions
- Run the scheduler now; open a run
- Permission needed
- Any platform role (read); operator for the scheduler button
Restore drills
- What it is for
- Restore a stored backup somewhere isolated and reconcile rows, file digests and ledger totals
- List: columns and filters
- #, Kind, Status, Backup, Rows, Differences, RTO, RPO, Requested. Filter kind/state; paging
- Buttons and actions
- Run a restore drill (choose a backup or 'Newest stored backup'); open a row
- Permission needed
- Any platform role (read); operator to run
Alerts
- What it is for
- Alerts opened by the alert policies
- List: columns and filters
- Policy, Severity, Status, Value, Detail, Correlation ids, Opened, Acknowledge button on open rows. Filter state/severity; paging
- Buttons and actions
- Evaluate now; Acknowledge
- Permission needed
- Any platform role (read); operator to evaluate or acknowledge
Workload
- What it is for
- Latency and error measurements of this server process
- List: columns and filters
- Summary line (since start: requests, p50/p95/p99, server errors; last 15 minutes p95; queue lag; dead letters). Columns: Route, Requests, p50 ms, p95 ms, p99 ms, 5xx
- Buttons and actions
- Measure again
- Permission needed
- Any platform role (read)
Scheduled jobs > open a job
Job record
- What it is for
- One job definition: Draft > Tested > Enabled (> Paused) and its recent runs
- List: columns and filters
- Tabs: Details, Runs (run key, state, attempts, queued, took, error), History. Smart: Queued, Dead letters, Succeeded
- Buttons and actions
- Edit (draft, configuration owner); Run now (operator, not when paused); Enable, Pause (operator); Back to draft (configuration owner)
- Permission needed
- config_owner / operator
Job runs > open a run
Run record
- What it is for
- One run: worker, lease, next retry, checkpoint, result, policy snapshot, side effects
- List: columns and filters
- Stage rail Queued > Running > Succeeded / Dead letter / Cancelled; facts card; Side effects recorded
- Buttons and actions
- Retry (same run key) on dead/cancelled; Cancel on queued/retrying/running; Refresh
- Permission needed
- operator
Restore drills > open a drill
Drill record
- What it is for
- The evidence of one drill or upgrade rehearsal (read only)
- List: columns and filters
- Rail Queued > Running > Passed/Failed; Reconciliation (kind, backup, rows, stored files, ledger totals, RTO, RPO, schema before -> after, message); Differences table; History. Smart: Differences, RTO, RPO
- Buttons and actions
- Refresh; Back to list
- Permission needed
- Any platform role (read)
Platform > Reporting
Release readiness
- What it is for
- One row per release and package, with the reconciliation 'deployed artifacts trace to an approved, signed gate'
- List: columns and filters
- Release, Environment, State, Package, Version, Dependencies, Risk, Gates failing, Digest, Traced to gate
- Buttons and actions
- Open a row (goes to the release); list export
- Permission needed
- Any platform role (read)
Job health
- What it is for
- Per job: accepted = queued + retrying + active + terminal
- List: columns and filters
- Job, State, Accepted, Queued, Retrying, Running, Succeeded, Dead, Cancelled, Oldest queued, Reconciles
- Buttons and actions
- Open a row (goes to the job); list export
- Permission needed
- Any platform role (read)
Recovery evidence
- What it is for
- Every drill with rows, file digests and ledger totals
- List: columns and filters
- #, Scope, Result, Snapshot, Time, Rows restored / expected, File digests, Ledger totals, RTO, RPO (min); reconciliation line 'n / m drills passed ...'
- Buttons and actions
- Open a row (goes to the drill); list export
- Permission needed
- Any platform role (read)
Capabilities
- What it is for
- What a company may see: its apps, their reviewed package versions, server tier, core version - nothing about hosts or secrets
- List: columns and filters
- App, What it does, Installed, Package, Reviewed version, Certified; line 'Server: <tier> - Core 1.0.0 - schema up to date'
- Buttons and actions
- None
- Permission needed
- Any member of the company (no platform role needed)
Platform > Configuration
Release policies
- What it is for
- Which optional gates and how many approvers a release needs
- List: columns and filters
- Code, Name, Status, Approvers, Optional gates, Tiers
- Buttons and actions
- New; open a row
- Permission needed
- Any platform role (read); configuration owner to create
Alert policies
- What it is for
- Rules that open alerts (6 shipped: QUEUE-LAG, P95, ERRORS, DEAD-JOBS, BACKUP-AGE, DRILLS)
- List: columns and filters
- Code, Name, Status, Measurement, Threshold, Last value, Open alerts
- Buttons and actions
- New; open a row
- Permission needed
- Any platform role (read); configuration owner to create
Feature flags
- What it is for
- Typed switches with two-person approval and per-company values
- List: columns and filters
- Key, Name, Status, In force, Waiting, Scope, Protected, Version
- Buttons and actions
- New; open a row
- Permission needed
- Any platform role (read); configuration owner to create
Vulnerability advisories
- What it is for
- Imported OSV advisories (no outbound feed) and their waivers
- List: columns and filters
- Advisory, Ecosystem, Package, Affected, Fixed in, Severity, Waived (until ...), Waive / Lift waiver button. Filter ecosystem/severity; paging
- Buttons and actions
- Import OSV advisories; Waive; Lift waiver
- Permission needed
- Any platform role (read); release manager to import; approver to waive
Bills of materials
- What it is for
- SBOMs taken from the running server (Python + npm)
- List: columns and filters
- Taken, Commit, Components, Vulnerable, Blocking, Licence flags, Digest; paging
- Buttons and actions
- Take an SBOM now; open a row
- Permission needed
- Any platform role (read); operator to take
Platform roles
- What it is for
- Who holds operator, release manager, independent approver, configuration owner, viewer/auditor
- List: columns and filters
- Person, Role, Active (Yes / Revoked), Granted by, Granted, Revoke button
- Buttons and actions
- Grant a role; Revoke
- Permission needed
- Any platform role (read); only the workspace owner grants or revokes
Platform audit trail
- What it is for
- Every platform command with who, when and correlation id
- List: columns and filters
- When, Who, Record, Action, Correlation; hidden Id. Search action/who/correlation/id; filter record/action; paging
- Buttons and actions
- List export
- Permission needed
- Any platform role (read)
Release policies > open a policy
Release policy record
- What it is for
- One policy: Draft > Active (> Archived)
- List: columns and filters
- Details, History
- Buttons and actions
- Edit (draft); Activate (approver, not the author); Archive (configuration owner)
- Permission needed
- config_owner / approver
Alert policies > open a policy
Alert policy record
- What it is for
- One rule: Draft > Active (> Paused) and the alerts it raised
- List: columns and filters
- Tabs: Details, Alerts (state, value, opened, correlation ids), History
- Buttons and actions
- Edit (not active, configuration owner); Activate (configuration owner); Pause (operator)
- Permission needed
- config_owner / operator
Feature flags > open a flag
Flag record
- What it is for
- One flag: Draft > Proposed > Active (> Archived)
- List: columns and filters
- Tabs: Details, Companies (per-company values), Versions (approved values), History
- Buttons and actions
- Edit (draft); Propose a value; Propose a change (active); Approve / Approve the change (approver, not the proposer); Refuse; Archive; Set for this company; Remove
- Permission needed
- config_owner / approver
Bills of materials > open an SBOM
SBOM record
- What it is for
- One SBOM: findings (vulnerability / licence) and components
- List: columns and filters
- Tabs: Findings (kind, component, detail, blocks a release), Components (ecosystem, name, version, licence, direct). Smart: Components, Vulnerable, Licence flags
- Buttons and actions
- Download CycloneDX; Back to list
- Permission needed
- Any platform role (read)