admin_users — module reference
Rendered from the module's own manifest, and from nothing written by hand. What the module does is its own page.
| |
|---|
| Module id | admin_users |
| Name | Admin Users |
| Version | 1.0.0 |
| Ships from | @endora-commerce/mod-admin-users |
| Licence | MIT |
Activation
This module cannot be switched off. Owns admin login, sessions and impersonation; switched off, no operator could sign in to the Admin UI at all — including to switch it back on.
Dependencies
| Module | Binding | What it means |
|---|
admin_roles | yes | installs and migrates after it, and an operator cannot switch it off underneath this module |
auth | yes | installs and migrates after it, and an operator cannot switch it off underneath this module |
customer_accounts | gating only | resolves customerAccountReadPort; withheld from dependencies because the install order cannot carry the edge |
mfa | no | degrades-without mfaEnrolmentStatePort — Reads "no second factor" for every admin on /admin-users, on /admin/me and on the login response. True while MFA is off — admin sign-in asks for none — and not a claim that nobody is enrolled. |
mfa | no | degrades-without mfaLoginPort — Admin sign-in stops asking for a second factor and offers no Google/Microsoft button. Every admin has a password a peer admin can reset, so no admin is locked out. |
Permissions
| Code | Label | Also needs |
|---|
customers:impersonate | Impersonate customers | — |
Command palette
| Action | Opens | Permission |
|---|
open-admin-users | /admin-users | admin_users:manage |
Settings
None.
Translations
Bundles at i18n inside the module, one file per shipped language.
Operator commands
| Command | What it does |
|---|
pnpm --filter backend run cli -- admin_users create | Create or update an admin user, bootstrapping the platform_admin role. |