Workspace settings & operations
The Administration area (/admin) unifies tenant configuration, navigation management, consumption monitoring, security keys, support escalations, and subscription billing.
General settings
Section titled “General settings”Under Admin → Settings (/admin/settings):
- Workspace name: The display name of the workspace shown across navigation and shared assets.
- Default timezone: Full IANA timezone selection (e.g.
America/New_York,UTC,Asia/Tokyo) used for report scheduling, cron evaluations, and timestamp formatting. - Date format: Workspace-wide default display format (
YYYY-MM-DD,MM/DD/YYYY,DD/MM/YYYY,DD.MM.YYYY). - Monthly AI token limit: Sets a consumption ceiling for generative AI features (AI chat, SQL generation, card insights).
- Single sign-on (SSO): Configure SAML 2.0 / OIDC enterprise identity providers. See SSO & MFA.
- Slack integration: Connect workspace Slack channels for automated report broadcasts and metric alert notifications.
- Custom themes: Manage custom UI and chart color palettes. See Themes.
Menu builder (/admin/menus)
Section titled “Menu builder (/admin/menus)”The Menu Builder (/admin/menus) provides full customization of the sidebar navigation tree:
- Hierarchy & Types: Create section headers, direct route links, dashboard shortcuts, paginated report links, and external URLs.
- Reordering & Nesting: Move entries up/down and create nested submenus.
- Role-Based Audience Grants: Control which roles can see specific menu items.
- Per-Role Label Overrides: Customize navigation labels per role (e.g. renaming “Warehouse” to “Enterprise Data Lake” for viewer personas).
- Viewer Preset: One-click configuration creating a streamlined view-only navigation tree (Home, Dashboards, Reports).
- System Locks: Core system entries are protected against accidental deletion while remaining reorderable and renamable.
API keys (/admin/api-keys)
Section titled “API keys (/admin/api-keys)”Manage programmatic access to the DataSquares REST API:
- Scoped minting: Generate API keys scoped to Read, Read & Write, or Admin privileges.
- One-time display: Full tokens are displayed once upon generation. Only key prefixes remain visible in the management table.
- Lifecycle management: Deactivate, reactivate, or permanently revoke API keys. View last-used timestamps and request activity.
Usage & token metering (/admin/usage)
Section titled “Usage & token metering (/admin/usage)”The Usage tab monitors consumption across workspace features:
- AI token consumption: Tracks input/output token usage over time against monthly workspace limits.
- Compute & pipeline minutes: Tracks execution time and compute resource utilization across pipelines and scheduled runs.
- Export & query volume: Aggregates query volumes and scheduled export deliveries.
Experience baseline (/admin/experience)
Section titled “Experience baseline (/admin/experience)”The Experience tab tracks real-user performance metrics across the workspace:
- Measures dashboard load times, query response latencies, and render speeds.
- Categorizes client rendering experiences into baseline health tiers to ensure smooth user interactions.
AI escalations (/admin/escalations)
Section titled “AI escalations (/admin/escalations)”When users interact with AI chat or diagnostic features and request human assistance (or when confidence thresholds trigger an escalation):
- Escalations are routed to the AI Escalations queue.
- Admins can inspect conversation context, assign tickets, resolve inquiries, and trace root-cause queries.
Billing & invoices (/admin/billing)
Section titled “Billing & invoices (/admin/billing)”The Billing tab manages financial accounts, payment methods, and invoices:
- Billing contact & auto-renew: Maintain organization billing details, tax IDs, and automated renewal preferences.
- Invoices & receipts: View itemized invoices, download formal PDF receipts, and settle outstanding balances directly.
- Credit balances: Track prepaid query and compute credit balances.
Related
Section titled “Related”- Users, roles & invites — member permissions and custom roles.
- SSO & MFA — SAML, Google/Azure SSO, and two-factor authentication.
- Compute & workers — managing VM execution fleets and worker queues.
- License — offline license verification and feature entitlements.
- Audit log — tamper-evident administrative audit logging.