Setup, navigation and lifecycle

Understand staff, client, broker and public route areas

Distinguish admin controllers, client portal pages, broker portal authentication and token-based public pages.

Audience: CRM staffPermission: Relevant authenticated role or valid public tokenModule v1.0.0
Exact navigationAdmin Area / Client Portal / Broker Portal / public application or countersign link
Before you begin
  • Use an account with Relevant authenticated role or valid public token and confirm the intended record or setting before making a change.
  • Follow the exact route above. If the screen or action is absent, check module activation, ownership and permissions rather than using another person’s account.
  • Use controlled test data for configuration, integration, email, AI, payment, portal or automation changes before production-wide use.

What this guide covers

Distinguish admin controllers, client portal pages, broker portal authentication and token-based public pages. The instructions reflect the supplied module’s registered menus, controller actions, views, settings and code-backed validation flow.

Exact step-by-step process

  1. Open Admin Area / Client Portal / Broker Portal / public application or countersign link.
  2. Select the relevant record, filter, report, model or configuration described below.
  3. Use the displayed action or read the current values without altering unrelated data.
  4. Compare the output with the code-backed rules and expected result in this guide.
  5. Record or correct any mismatch before relying on the output in production.

Fields, choices and supported possibilities

Exact actionUnderstand staff, client, broker and public route areas
Exact navigationAdmin Area / Client Portal / Broker Portal / public application or countersign link
Module version1.0.0
Access ruleRelevant authenticated role or valid public token
VerificationReopen the source record and confirm the expected status, linked record, file, notification, portal visibility or financial effect.
Organisation/personName, code, email, phone, website, tax/VAT, address, status and profile image where exposed.
Access and structurePlan, role, administrator flag, departments, staff type/company link, approval-manager and public flags where applicable.

Code-backed validations and workflow rules

  • Do not reuse an admin URL for a client/broker/public user.
  • Public application and agreement routes validate tokens and record state.
  • Company, owner, broker and staff records use different capability groups and ownership checks.
  • Email-exists checks prevent duplicate staff/company identities in supported forms.

Expected result and verification

  • The supported understand staff, client, broker and public route areas flow completes without bypassing permission or validation checks.
  • The resulting record, setting, status, file, delivery event or external response is visible from the relevant workspace.
  • Unexpected validation, provider or linked-record errors are investigated before retrying.

Security, privacy and operational checks

  • Apply least privilege to purchasing, vendor, invoice, payment, return, contract and report permissions.
  • Verify vendor identity, bank/payment details, tax, currency, totals and approvals before creating financial commitments.
  • Treat public links, signatures, portal files, attachments and exported reports as controlled business records.
  • Test settings and automated jobs with controlled records before production-wide use.