User Guide

User management

Create and manage user accounts with role-based access control.

Roles#

  • Admin — full access to all settings, diagnostics, analytics, user management, and Knowledge Graph administration.
  • User — search, chat, image search, data source viewing, and saved searches only.

Creating users#

Go to Settings → Users and click "Add User". Enter the user's email, display name, password, and role. User creation is limited by your license's max_users setting.

Deactivation#

Deactivate users instead of deleting them to preserve audit history. Deactivated users cannot log in but their data (chat sessions, search history) remains. Reactivate at any time.

Password management#

Admins can reset any user's password from the user list. Users can change their own password from Settings → Account. The forgot password flow sends a secure HMAC token via email.

Tip
When SSO is enabled, users are automatically created on first SSO login. Their role defaults to "User" unless mapped via SSO group sync.