Admin
Organization-level access for projects, users, uploads, processing, rules, reports, AI review, and operations.
Cognito verifies the user, RBAC defines the workspace boundary, and project claims decide which validation evidence each engineer can inspect or update.
Identity
Cognito
Config pending
Roles
Admin / Engineer
Group mapped RBAC
Project scope
Claims
Engineer assignments
Workspace entry
Continue with Cognito
Use your assigned Admin or Engineer account. Production access is evaluated from Cognito groups and project claims.
Cognito is not configured for this hostname. Contact an administrator.
Admin access
Full organization setup, operations, users, parsers, rules, reports, and audit visibility.
Engineer access
Assigned project upload, processing, signal review, rule evaluation, reports, and AI drafts.
Evidence boundary
Project membership and technical context decide which logs and reports are visible.
RBAC model
Admin and Engineer access is controlled by Cognito groups and custom project-code claims. Engineers see only the project codes assigned in their token.
Admin
Organization-level access for projects, users, uploads, processing, rules, reports, AI review, and operations.
Engineer
Project-member access for validation engineers working only on assigned vehicle programs or campaigns.
Production RBAC boundary
Local Admin and Engineer profiles are disabled on this hostname. Use Cognito groups for role assignment and custom:project_codes for Engineer project scope.
Production readiness
Identity provider
Cognito config pending
RBAC groups
Admin, Engineer, and Viewer groups control page access.
Project claims
Engineer scope comes from custom project-code claims.
Evidence controls
Uploads, processing, viewer data, reports, and AI drafts stay project scoped.
Scope
Tenant
Data
Project
Logs
Traceable
State
Guarded