BUSINESS CASES
Where this module fits
- exact-identity risk triage
- account-takeover investigation
- alert assignment and resolution
- lifecycle intervention
- non-trading capability suspension
- reviewer-rating evidence
v2ADMINISTRATION · MODULE 41
Review tenant-scoped identity lifecycle, deterministic risk signals, alerts, session posture, and attributed interventions without exposing secret or regulated source evidence.
BUSINESS CASES
PRIMARY CONSUMERS
PREREQUISITES
RECOMMENDED WORKFLOW
start with an exact managed-identity identifier or aggregate tenant posture
inspect control versions, evidence commitments, alerts, sessions, and prior events
obtain USER_RISK_INTERVENTION step-up and record one reasoned version-bound action
re-read the canonical record and reconcile retained evidence
MODULE CONTRACTS
Each operation states whether its request shape is authoritative in OpenAPI, reviewed as a planning profile, or intentionally left as an outline pending an owner schema.
/api/v2/admin/usersSearch tenant-scoped identities and return lifecycle, deterministic risk, rating, and open-alert posture.›GETGet identity control record/api/v2/admin/users/{profile_uuid}Return one identity's lifecycle, capability controls, alerts, evidence signals, sessions, and audit events.›POSTApply identity intervention/api/v2/admin/users/{profile_uuid}/interventionsApply a version-bound lifecycle, capability, reviewer-rating, or alert decision with an attributed reason.›