Settings

One tabbed screen holding your own account and theme, the organisation profile, users and roles, the integration directory, the system-wide switches, frameworks and a health panel.

Settings is where Aegis is configured. You come here for your own profile and theme, but it is also the door to what shapes the whole tenant (your organisation's private Aegis instance): who may sign in, what is connected, which frameworks are tracked. Most of that is reserved for administrators, so the tabs you see depend on your role.

Who uses it

Everyone can open /settings, but almost every tab beyond the first is gated.

The active tab is mirrored into the address as ?tab=users, so a bookmark reopens it. A link naming a tab your role cannot see falls back to Account rather than a blank panel.

What's on this screen

The page opens with the heading Settings and the line "Manage your account, system configuration, and integrations." Under it runs the tab strip, with Account selected and underlined. A save anywhere on this page drops a green "Settings saved successfully." message above the tabs; errors and rate-limiting appear in the same place.

The Account tab stacks four cards. Profile shows an avatar built from the first letter of your name, your name and email address, and a Role row labelled "Your permission level" with your role as a grey badge at the right — ADMIN in the capture. Nothing on this card is editable. Appearance holds a single row, Dark Mode / "Switch to dark theme", with a toggle at the far right. Wizards holds the two reset controls covered below. Quick Links sits under the fold of the capture, with shortcuts to Configure Connectors and View Compliance.

Around the page is the usual Aegis frame: a top bar with the environment label, search, language code, a moon for dark mode, a help "?", a notification bell and your name with Sign out; and a left sidebar of eleven collapsed groups, Governance down to Administration.

Get your bearings, and reset the wizards

  1. Select the help "?" in the top bar. The built-in User Guide opens at the chapter for the screen you are on.
  2. Your name sits at the right of the top bar with Sign out beside it; the Profile card repeats it and adds your role.
  3. Select Administration at the foot of the left sidebar. The group expands to show the administration pages, Settings among them — that is how you get back here.
  4. In the Wizards card, select Reset Getting Started. The button reads "Resetting…", then a message confirms the checklist will re-appear on your dashboard. This affects only you.
  5. Select the red-outlined Reset Onboarding — administrators only. A dialog headed "Reset onboarding for all users?" warns that everyone sees the wizard again at their next sign-in. Confirm, and a message reports it is done.
The Settings screen on the Account tab, with the tab strip and the Profile, Appearance and Wizards cards — /settings.
The Settings screen on the Account tab, with the tab strip and the Profile, Appearance and Wizards cards — /settings.

Switch the theme, and jump to a linked screen

  1. On the Appearance card, select the Dark Mode toggle. The dark theme applies at once and the row relabels itself Light Mode / "Switch to light theme", so the same toggle takes you back.
  2. Scroll to Quick Links and select Configure Connectors or View Compliance to leave Settings for those screens.

Set the organisation profile

The Organization tab records the jurisdiction and the data-protection contact Aegis uses for regulatory reporting.

  1. Select Organization. Two cards load with your stored values: Jurisdiction & NIS2 Classification and Data Protection Officer.
  2. Choose your EU Member State and NIS2 Entity Type; both start at Not set. Where Aegis knows the matching regulator, a read-only Supervisory Authority panel appears under the two fields after saving.
  3. Fill in DPO Name and DPO Email — the contact used for GDPR and NIS2 notifications — then select Save Organization Settings. The green confirmation appears at the top.
  4. Administrators also see a Risk Severity Levels card below. Pick a Severity PresetDefault (5 levels) or ISO 27005 (4 levels) — or switch to Custom and set each level's Key, Label, Min Score and Color, with a Preview grid showing how scores will be shaded. Saving is refused, with the reasons listed, unless there are between two and ten levels, every key is unique, and the lowest level starts at a Min Score of 1 so no score is left uncovered.

Manage users, roles and permission groups

Three administrator-only tabs carry access control.

  1. Open Users. A table lists everyone under User, Role, Status, Last Login, Created and Actions, with a search box, Role and Status filters and an Invite User button above it. The row actions change someone's role, reset their password and deactivate or reactivate the account; invitations not yet accepted sit in their own table underneath.
  2. Open Roles. This tab only reports: a card per built-in role with the number of users holding it, then a Permission Matrix of what each may do. A notice states that the built-in roles have fixed permission sets and cannot be edited here.
  3. Open Permission Groups for finer-grained access than a role gives. Select Create Group, name it and choose the permissions it carries; the table then lists Name, Description, Permissions, Members and View, Edit and Delete actions. Mapping groups from your identity provider onto Aegis roles is a different screen — see Single sign-on with Microsoft Entra ID.

Open an integration

The Integrations tab is a directory of link cards in two groups.

  1. Under External Integrations, open Single Sign-On (SSO) to configure OIDC providers and group mappings, or Webhooks to push Aegis events to other tools.
  2. Under Advanced Configuration, open Control Monitoring, Hybrid Appliances, MCP Servers, Peer Benchmarking, Meeting Rooms, Notification Preferences or Install tool. Each opens its own page; the back button returns you here. An extra AI Models card joins this group when model management is switched on.

Configure the system

The System tab carries the tenant-wide switches, all administrator-only.

  1. Use the Enable AI Assistance toggle in the AI Features card to turn the AI helpers on or off across the product. It saves as soon as you select it, and the AI controls in the other modules stop offering suggestions.
  2. Use the AI Models card below it — "Configure AI models available in the chat interface" — to Add Model, or to edit, disable or delete an existing one. A dot at the left of each row shows whether it is enabled, and the model in use by default carries a Default badge.
  3. Read the License card for Type, Max Users and Max Storage, plus an Expires row when your licence has an end date; uncapped values read Unlimited, and Manage license & usage opens the licence page.
  4. Under Session Duration, choose a Session Lifetime — 1, 3, 7, 14, 30, 60 or 90 days. A Save button appears beside the list once the value differs from the stored one.
  5. If your tenant is licensed for regulatory intelligence, switch on Enable regulatory digest and enter a Digest email recipient. An invalid address is refused inline before anything is saved; clearing the field removes the recipient. Teams and Slack delivery follows your connector webhooks.
  6. Use Regulatory Feed Sources to add, edit, enable or disable the feeds the digest draws on, and Support Contact to set where people are sent for help; its Preview button shows them what they will see.
A new session length applies only after a restart

Saving Session Lifetime stores the value, but the hint under the field says the change applies after the next application restart. Plan it with whoever operates your Aegis instance.

Turn frameworks on and off

  1. Open Frameworks. The Compliance Frameworks card lists each framework your tenant holds, with its key, control count and a read-only maturity-scale summary.
  2. Use the toggle at the right of a row to enable or disable it. Disabled frameworks drop out of the tracking views; enabling one brings its controls back into scope.
  3. If the card reads No frameworks available, none is provisioned for your tenant yet. Frameworks are licensed one at a time, so ask your provider.

The list shows what your tenant is entitled to. SOC 2 is on the roadmap, not shipped, so it does not appear here.

Check system health

  1. Open Diagnostics. Two cards report whether the Database is Connected and whether the Background Worker is running, with its queue depth; a coloured dot repeats what the text says.
  2. Read the Usage card for Users and Storage against your licence limits. An Unlimited limit shows the numbers without a bar; the storage bar turns amber past 70% and red past 90%.
  3. Read License Status for your licence type and expiry date, or No expiration.

The AI assist

Settings is where AI is switched on, not where it acts. Aegis AI only suggests: a person reviews and decides, and it never changes a setting on its own.

Tips and limits

Where this connects