Management — overview
Management administers organizations, their workspaces (events), and who
can operate what. It's the only profile with email/password login and the
only one with the concept of a role (owner, admin, auditor).
What management can do today
- Create/join an organization, view and edit its own global profile.
- Create, list, update, and close workspaces (events).
- Create PDV and cashier accounts scoped to a specific workspace, rotate their password, deactivate them.
- Invite members to the organization (
admin/auditor), change an existing member's role/status, revoke access. - View the organization's administrative audit log.
Roles and what each one can do
| Action | owner | admin | auditor |
|---|---|---|---|
| View organization, workspaces, members | ✅ | ✅ | ✅ |
| Create/edit workspace | ✅ | ✅ | ❌ |
| Create/deactivate/rotate password of PDV and cashier | ✅ | ✅ | ❌ |
| Invite a member | ✅ | ❌ | ❌ |
| Change role/revoke a member | ✅ | ❌ | ❌ |
| Close the organization | ✅ | ❌ | ❌ |
The owner can never be demoted or revoked by anyone (not even by
themselves) — it's the one account that guarantees an organization always
has someone responsible for it.
Where everything lives
- Authentication — login, refresh, logout.
- Profile — the logged-in manager's personal data.
- Organizations and workspaces — creating and managing events.
- Operators (PDV and cashier) — provisioning operational accounts.
- Members and invitations — who else has access to the organization.