User guide
Choose the guide for your role.
Operator, Maker, and Administrator are distinct actors with separate workspaces and permissions. Start with the role assigned to your account; a valid session for one role does not authorize another role's screens.
Role-specific guides
Physical operations
Operator
Control nearby devices over NFC or Bluetooth, maintain NFC-tag records, review operator events, and manage operator credentials.
Device ownershipMaker
Maintain device inventory and linked tags, review maker events, and manage maker identity and passkeys.
Platform oversightAdministrator
Manage maker accounts, inspect platform security events, and maintain a tightly controlled administrative session.
Responsibilities at a glance
- Administrator establishes oversight.Administrators manage maker accounts and inspect security activity across the platform.
- Maker maintains the device domain.Makers manage their device inventory and review the security events associated with their work.
- Operator performs physical interaction.Operators use NFC or Bluetooth and verify physical-device identity in the field.
- Each actor protects a separate identity.Profiles, passkeys, tokens, and authorization checks remain role-specific.
Least privilege. Use the account and workspace intended for the task. Administrator access should
not replace a Maker or Operator account for routine work.
Shared account practices
- Confirm the role shown by the workspace before making changes.
- Use the profile area to verify which account owns the current session.
- Register and remove passkeys only from the corresponding role's credential screen.
- Sign out before another actor uses a shared or managed phone.
- Never share tokens, passkeys, NFC master keys, or session-key diagnostics.