Configuration

This is the administrator’s section. Everything here lives under Settings in the app, and almost all of it is global — configure it once and every register can use it.

Configure in this order

The order matters more here than anywhere else in the app, because each step depends on the one before it.

  1. Custom assets — the things your risks are about.
  2. Custom fields — what you can be asked, and which answers are legal.
  3. Factors — how an answer becomes a number.
  4. Assessment methodologies — how those numbers combine into a score.
  5. Layouts and stages — where the questions appear, and when.
  6. Register settings — which of the above each register uses.

The four layers

Every setting in the app belongs to exactly one of four layers. Knowing which layer you are in answers most where do I configure this? questions before you have to ask them.

Layer Answers Where
1 — Library What exists in the world? Custom assets, fields, factors, controls
2 — Composition How do these combine into a number? Assessment methodologies
3 — Placement Am I asked, where, and who may edit it? Layouts, stages, access
4 — Record What is true about this one risk? The risk itself

Two rules that never bend. The field decides which values are legal; the layout only decides whether you are asked. And a layout rule can only ever take something away — it can never grant access the permission model has not already given.