Dashboard Overview
The dashboard is an enterprise operations console. It is designed to answer:
- What happened?
- Why did it happen?
- Which tenant, asset, or user is affected?
- What evidence exists?
- Who acted?
- What should happen next?
The console is now split into focused navigation areas:
- Overview: status summary, latest critical alert, platform pillar cards, and recent timeline.
- Assets: discovered/unauthorized asset list plus asset detail.
- Alerts: alert list, selected alert detail, and linked workflow context.
- Integrations: filterable destination health, selected destination detail, expandable attempts, safe copy actions, refresh, and retry/dead-letter state.
- Compliance Evidence: auditor-safe evidence chain and linked records.
- Audit: append-only activity and denied mutation attempts where available.
- Settings: tenant/session/config context only; unsupported mutation forms are intentionally absent.
Current pages still use the completed unauthorized-device thin-slice APIs and local fixture fallback. They do not imply broader RMM discovery, SIEM search, DLQ replay, or editable tenant settings are implemented. Enabled actions are limited to client-side exploration, safe ID copy, and route refresh unless a backend API contract already exists.