Administration
Role-based access control, user management, data retention policies, and security configuration.
Security Principles
Role-Based Access
Permissions scoped per role — brokers see only assigned RFQs.
Secure Authentication
Authenticated sessions required for all operational access.
Least Privilege
Users receive only the minimum access required.
Audit Logging
Every AI and human action is immutably logged.
Secure Webhooks
HMAC signature verification on all inbound webhooks.
Data Retention
Administrator-configurable retention policies per data type.
Role-Based Access Control
| Role | Users | Permissions |
|---|---|---|
| Super Admin | 1 | Full access to all modules, configuration, and audit. |
| Administrator | 3 | All operations + configuration. No user management. |
| Operations Manager | 4 | Operations, reporting, exceptions. No AI config. |
| Broker | 18 | Assigned RFQs, quotes, customer communication. |
| Pricing Manager | 2 | Pricing rules, lane intelligence, margin overrides. |
| View Only | 6 | Read-only dashboards and reports. |
Data Retention Policies
| Data Type | Default Retention | Configured Retention |
|---|---|---|
| Customer Freight Documents | 90 days | 180 DAYS |
| RFQ Records | 1 year | 3 YEARS |
| Audit Trail | 2 years | 7 YEARS |
| Customer Data | Indefinite | INDEFINITE |
| AI Extraction Artifacts | 30 days | 90 DAYS |