| username | role | enabled | created |
|---|
Leave password empty and the person gets a welcome email with a one-time link to choose their own password - which is preferred, because a password you never see is one you cannot read out over the phone. The link is single use and expires; if the email does not go out you will be told so here, with the link, and there is a send invite button on every row.
Reset password sets a temporary password and forces the user to change it at next login (their sessions are revoked, and any outstanding setup link is cancelled). Disable revokes sessions immediately. The last enabled admin cannot be deleted, disabled or demoted.
API tokens
Named machine tokens for API clients (sweeps, integrations) - equal peers of the RADIOCTL_API_KEYS env keys. Tokens are shared, not owned by accounts; deleting a user never breaks an integration. The token value is shown once, at creation - copy it then.
| name | created | created by |
|---|
new token (copy now - it is never shown
again):
community chat
Per-community chat rooms in the map's left-hand panel, on the live aiming page as toasts, and in a pop-out window. Off by default. Chat is for signed-in people with a field role (admin, operator, tech, support) - API tokens and guest share links cannot read or post, and that is enforced by the server, not hidden in the interface. Messages are kept forever and cannot be edited or deleted; switching chat off hides the rooms and refuses the API, it does not delete anything.