User Guide
Settings
Unified admin hub with 9 role-gated tabs for managing your CCO installation.
Overview#
The Settings page consolidates all configuration into a single page with tabs. Which tabs you see depends on your role:
- ✓Viewer — Account tab only
- ✓Analyst — Account tab only
- ✓Admin — Account, Cloud Accounts, Users, Email, AI Assistant, Network
- ✓Owner (live mode) — All 9 tabs
All tabs#
👤
Account
Profile (name, email, company) and Change Password. All roles.
☁️
Cloud Accounts
Connect/disconnect cloud providers, verify credentials, toggle subscription cost tracking. Admin+.
👥
Users
User list with role badges, invite users, change roles, edit data scope, deactivate/reactivate. Admin+.
🔐
SSO
Azure AD, Google, Generic OIDC provider configuration. Test before save. Group sync mappings. Owner only.
🎨
Branding
Company name, logo upload, favicon upload, accent color picker. Owner only.
🔑
License
Plan details, expiry, license key. Apply Plan Upgrade. Owner only, live mode only.
📧
SMTP configuration (host, port, credentials, TLS). Test email sub-section. Admin+.
🤖
AI Assistant
Provider (OpenAI/Anthropic), API key, model selection, test connection, usage summary. Admin+.
🌐
Network
Enterprise proxy server, authentication, CA certificate, SSL verification toggle, proxy exclusions, test connectivity. Admin+.
Deep linking#
Settings supports deep linking via URL parameter:
/settings?tab=cloud
/settings?tab=users
/settings?tab=sso
/settings?tab=users
/settings?tab=sso
Legacy routes /subscriptions and /users redirect to the appropriate Settings tab.
Read-only mode#
When SETTINGS_READONLY=true (demo environments), the Cloud Accounts and Users tabs disable all write actions: Connect Account buttons are hidden, disconnect/verify/toggle actions are disabled, and invite/role-change actions are blocked.
Tip
Read-only mode only affects settings. Users can still explore costs, generate reports, and use all analytics features in the demo.