Administration¶
These pages are for whoever sets Attest up and keeps it running. Most of the setup happens once.
- Sign in and roles covers the identity provider client and the four roles.
- The GitLab signing credential covers the GitLab application that lets reviewers act under their own accounts.
- Explainable AI model covers selecting and testing the model used for narration.
- Health and recon covers refresh, data freshness, and the server event log.
What an administrator can and cannot do¶
An administrator can see everything: every application, every decision, every claim, system health, and the event log. An administrator can release a claim that is stuck, trigger a refresh from GitLab, and choose the Explainable AI model.
An administrator cannot approve a merge request for someone else and cannot assign roles inside Attest. Authorization is never delegated, and roles are managed in the identity provider.