User Guide

Settings

Unified admin hub with 9 role-gated tabs for managing your CCO installation.

Overview#

The Settings page consolidates all configuration into a single page with tabs. Which tabs you see depends on your role:

  • ✓Viewer — Account tab only
  • ✓Analyst — Account tab only
  • ✓Admin — Account, Cloud Accounts, Users, Email, AI Assistant, Network
  • ✓Owner (live mode) — All 9 tabs

All tabs#

👤

Account

Profile (name, email, company) and Change Password. All roles.
☁️

Cloud Accounts

Connect/disconnect cloud providers, verify credentials, toggle subscription cost tracking. Admin+.
👥

Users

User list with role badges, invite users, change roles, edit data scope, deactivate/reactivate. Admin+.
🔐

SSO

Azure AD, Google, Generic OIDC provider configuration. Test before save. Group sync mappings. Owner only.
🎨

Branding

Company name, logo upload, favicon upload, accent color picker. Owner only.
🔑

License

Plan details, expiry, license key. Apply Plan Upgrade. Owner only, live mode only.
📧

Email

SMTP configuration (host, port, credentials, TLS). Test email sub-section. Admin+.
🤖

AI Assistant

Provider (OpenAI/Anthropic), API key, model selection, test connection, usage summary. Admin+.
🌐

Network

Enterprise proxy server, authentication, CA certificate, SSL verification toggle, proxy exclusions, test connectivity. Admin+.

Deep linking#

Settings supports deep linking via URL parameter:

/settings?tab=cloud
/settings?tab=users
/settings?tab=sso

Legacy routes /subscriptions and /users redirect to the appropriate Settings tab.

Read-only mode#

When SETTINGS_READONLY=true (demo environments), the Cloud Accounts and Users tabs disable all write actions: Connect Account buttons are hidden, disconnect/verify/toggle actions are disabled, and invite/role-change actions are blocked.

Tip
Read-only mode only affects settings. Users can still explore costs, generate reports, and use all analytics features in the demo.