← System Admin
The Keep · System Admin
User Management
Manage platform users, access permissions, and authentication settings.
Platform Users
Loading users…
User Job Role Permissions 2FA Status Last Login
Access Permissions Reference
Each user can hold one or more permissions. Assign based on role.
PermissionAreaCan AccessTypical Role
Facilitator Round Table Run scenarios, open/close voting, display results, navigate phases Workshop facilitator, lead consultant
Reporter The Archive Access post-simulation reports, export PDFs, view scoring breakdowns Account manager, report writer
Creator Admin Console (The Keep) Create and edit simulation scenarios, manage question banks and decision trees Content creator, senior consultant
Admin Admin Console (The Keep) Full admin console access including scenario management, folder structure, and imports Platform admin, operations lead
System Admin System Admin (The Keep) User management, access control, authentication settings, platform configuration System administrator, IT lead
Authentication Settings
Platform-wide authentication configuration.
These settings apply platform-wide. Changes take effect immediately for new login attempts.

Session Information
Session Timeout
8 hrs
Inactive sessions
Auth Method
Local
Platform-managed users
2FA Supported
TOTP
Google Authenticator compatible
Round TableFacilitator ConsoleControl scenarios and voting→ The ArchiveReporting & ExportPost-simulation analysis→ The KeepAdmin ConsoleScenario management→ System AdminSystem AdminPlatform controls→
CASTLE · The Keep · User Management
Core to Cloud Ltd

Access Permissions
Facilitator
Run scenarios and control live voting in the Round Table
Reporter
Access reports and export simulation results from The Archive
Creator
Create and edit simulation scenarios in Admin Console
Admin
Full access to Admin Console including imports and folder management
System Administrator
Full platform access including User Management, auth settings, and system configuration

Account Status
Two-Factor Auth
Setup Google Authenticator
Share this QR code and secret with the user to set up 2FA.
📱 QR Code (server-generated)
In production, scan this with Google Authenticator
Manual Entry Secret
User enrols on next login
This key is unique to this user. Enter it manually in Google Authenticator if scanning fails.
2FA note: CASTLE now generates the user secret at next login and validates Google Authenticator codes server-side. Admins can reset or disable 2FA but cannot view secrets.