Admin
Settings that would otherwise be constants buried in the code, and the
state of what is actually running.
Anyone who can reach this server can see and change this page.
Sign-in is not built yet. Everything here is readable, and the settings that
could weaken a control — the provenance gate, the two-person rule, open-web
research — are deliberately read-only until it is. Secrets are never shown:
only whether they are set.
Sessions
There are no sessions, because there is no sign-in. This tab is listed rather
than hidden because an empty session list and an absent one mean very different
things, and an admin screen should not let you confuse them.
When authentication is added, this is where active sessions are listed and
revoked: who, from where, since when, last seen. The place it hooks into the code
is require_admin() in app/admin.py — one function that
every route on this page already depends on.
Until then, treat reachability of this server as full access to it.