Settings Guardrails
Source-static proofTenant And Membership Control
No live account writesWorkspace identity, tenant isolation, and membership readiness in one account panel.
Account Settings reviews the synthetic tenant envelope after Settings or Team triage. Real-data tenant setup, invitations, membership writes, permission grants, and provider activation remain blocked.
Every record carries account/workspace/source context
Matches the app shell context and every tenant-owned record
Language And Translation Preferences
Profile language reviewUsers can choose the browser-local app language from the top navigation. The current sprint translates the shell navigation and records the profile preference path for account-backed settings.
Inbound messages preserve original wording and show reviewed English/profile-language text before any draft is staged.
Recipients can be reviewed as English-first or profile-language-first. Delivery remains blocked until future provider and approval gates exist.
Account Boundary
Synthetic onlyAccount Profile Readiness
| Field | Value | Safety | Next Action |
|---|---|---|---|
| Account id | acct_synthetic_demo | Matches the app shell context and every tenant-owned record | Keep as synthetic fixture until separate migration, security, and tenant-isolation approval |
| Account name | Synthetic POC Tenant | Planning-only workspace for STR, MTR, LTR, Work, Money, and Admin | Do not mix future real owner data into this synthetic POC tenant |
| Fixture purpose | poc_demo | Identifies this tenant as synthetic POC data only | Create a separate second tenant for future owner-approved real-data migration |
| Data policy | Redacted fixtures only | No real tenant, owner, guest, vendor, cleaner, property, payment, or source-system data | Keep seed execution, Supabase writes, and real imports blocked |
| Environment | Local/dev planning | No production deployment, no DNS, no secrets, no auth setup, no live integrations | Hold production setup, invitations, provisioning, and provider setup until explicit approval |
Workspace Boundaries
| Workspace | Account Context | Includes | Denied | Audit Requirement |
|---|---|---|---|---|
| Synthetic POC operations | acct_synthetic_demo | 20 properties, 2 work rows, 1 inspections, 2 documents, 6 messages | Denial tenants, production imports, private records, and future real owner data | Every record carries account/workspace/source context |
| Owner-safe summaries | acct_synthetic_demo | 1 report rows and 1 owner-visible Money summaries | Private resident ledgers, source rows, draft reconciliation notes, platform payout detail | Manager approval before owner-visible publication |
| Field execution | acct_synthetic_demo | 2 assigned work rows and checklist/evidence metadata | Financials, private contacts, access codes, owner statements, account writes | Property assignment and role filter before data renders |
| Future real-data tenant | Not created in Gate A | Nothing in the synthetic POC tenant | Owner real data import, Supabase writes, seed execution, auth provisioning, provider setup | Separate owner-approved migration, security, and tenant-isolation gate |
Membership Readiness
| Actor | Role | Status | Property Access | Can Do | Blocked Actions | Next Action |
|---|---|---|---|---|---|---|
| Portfolio Manager A | manager | Configured in fixture only | All active synthetic POC properties | Run operations, review work, approve owner-visible summaries, see operational Money | No cross-account access, no external send, no invitations, no auth provisioning | Owner approves real membership, invitations, and auth setup later |
| Owner Group 101 | owner | Configured in fixture only | Owner-visible synthetic property group | Read approved statements, approved reports, approved expenses, contributions, draws | No internal ledgers, private resident rows, draft reconciliation, or non-owner payables | Owner approves real membership, invitations, and auth setup later |
| Cleaner Team A | cleaner | Configured in fixture only | Assigned synthetic work only | Read assigned checklist, schedule window, and evidence prompts | No financials, no private contacts, no owner statements, no account writes | Owner approves real membership, invitations, and auth setup later |
| Vendor HVAC-01 | vendor | Configured in fixture only | Assigned synthetic work only | Read assigned work context, schedule window, and evidence prompts | No financials, no private contacts, no owner statements, no account writes | Owner approves real membership, invitations, and auth setup later |