Roles, access & account setup.
Granular role scoping across the dashboard, a proper password-setup flow for invited admins, and a batch of reliability fixes for screenshots, sign-in, and fleet installs.
New
- Set-password for invited admins · invitation emails now land on a dedicated page where the new admin chooses a password, then drops straight into the dashboard. Magic-link stays as a fallback.
- Region-aware legal pages · Contact and Terms & Conditions pages for India-based billing.
Improved
- Granular roles · managers and viewers are scoped to their teams; device commands, policy, integrations and role management are owner/admin only — enforced in the database, not just the UI.
- The sidebar now hides pages a role can't use (devices, policy, billing, roles, settings) instead of 403-ing on click.
Fixed
- Screenshot viewer no longer returns "not an admin" for owners on tenants with more than one admin.
- Blank screen after password sign-in — the dashboard now boots with the session in hand.
- Revoking an admin now fully removes the account (login + record), instead of leaving an orphaned row.
- Long enrollment-token filenames no longer overflow the download card.
- Silent fleet installs no longer roll back on endpoints whose security tooling locks the autostart registry key.
Coming next
- Agent deferred screenshot re-upload · screenshots that fail to upload on a flaky network are retried automatically and back-filled in the dashboard. Slated for the next agent release.