Identity & Access Governance
User Management & Role-Based Access Control (RBAC)
Strict enterprise role separation enforcing disjoint audit authority and least-privilege governance.
Authorized Enterprise Personnel
5 Users Enrolled| User | Department | Role | Status | MFA | Last Login | Actions |
|---|---|---|---|---|---|---|
Dr. Jane Architect dr.jane@synapse.enterprise | Executive Governance | EXECUTIVE_DIRECTOR | ● ACTIVE | ✓ Enforced | Just now | |
Marcus Vance marcus.audit@synapse.enterprise | Risk & Audit Board | AUDITOR_GENERAL | ● ACTIVE | ✓ Enforced | 14m ago | |
Elena Rostova elena.lead@synapse.enterprise | Autonomous Operations | PROJECT_LEAD | ● ACTIVE | ✓ Enforced | 2h ago | |
Kaito Tanaka kaito.sec@synapse.enterprise | InfoSec & Cryptography | SECURITY_ENGINEER | ● ACTIVE | ✓ Enforced | 5h ago | |
Sarah Sterling sarah.observer@synapse.enterprise | Client Advisory | OBSERVER | ● ACTIVE | Disabled | Yesterday |
Granular Privilege & Disjoint Authority Matrix
Enforced across Next.js API route handlers, GraphQL resolvers, and server actions.
| Permission Key | Description | Executive | Auditor | Project Lead | Security | Observer |
|---|---|---|---|---|---|---|
| PROJECT_CREATE | Create & Initialize AI Projects | ✅ | — | ✅ | — | — |
| PHASE_OVERRIDE | Override Quality Gate on Rejection | ✅ | ✅ | — | — | — |
| BUDGET_EXTEND | Extend Hard Token Budget Ceilings | ✅ | — | — | — | — |
| AUDIT_SIGN_OFF | Sign Off Independent Audit Gate | ✅ | ✅ | — | — | — |
| VAULT_MANAGE | Manage AES-256 API Key Vault | — | — | — | ✅ | — |
| SESSION_REVOKE | Revoke Active Browser Sessions | ✅ | — | — | ✅ | — |
| ARTIFACT_READ | Inspect & Download Deliverables | ✅ | ✅ | ✅ | ✅ | ✅ |