Actions
User Story #280
openEpic #49: Implement user, groups and permissions management
Feature #266: Roles
As an operator, I want a protected Administrator role to exist from the start, so that the installation always has someone who can run it
User Story #280:
As an operator, I want a protected Administrator role to exist from the start, so that the installation always has someone who can run it
Start date:
09/20/2026
Due date:
% Done:
0%
Estimated time:
Description
An installation must never end up in a state where nobody can administer it, whether through a mistaken edit, a mistaken deletion, or a denial placed somewhere awkward.
Acceptance criteria
- A fresh install has an Administrator role covering every permission, present and future
- That role cannot be renamed, edited or deleted
- Its holders are never refused, including where a denial would otherwise apply
- The account created by the first-install setup screen holds it
- The last holder cannot be removed from it, deleted, or suspended, and the refusal explains why
Rejection reason
Superseded by the rewritten epic #49
Actions