kestrel-one

Kestrel One administration

Find the controls for people, organizations, models, deployments, email, billing, and platform health.

Kestrel Oneadvanced0.7.0 Stable
Verified 2026-07-13View sourceReport a docs issue

Administration is for authorized platform operators. Regular members manage their own Threads and the Projects they can access; they do not need these controls for everyday work.

Choose the administrative area

GoalAdministrative area
Add, suspend, or investigate a personUsers and organization access
Connect a provider or approve a modelGateways and models
Qualify profiles or review deployment lifecycleManaged model deployments
Verify transactional messagesEmail configuration and test delivery
Diagnose platform behaviorLogs, statistics, runtime tools, and health
Configure provider reasoning or inspect opted-in retained contentEnvironment settings and Environment activity
Manage shared Apps, custom MCP Apps, and maximum capability policyEnvironment Apps
Manage enabled commercial controlsOrganization billing

Kestrel One checks for an administrator session before returning administrative data. Secrets may be entered through trusted settings but are never returned in readable form.

Provider reasoning display and retention are separate Environment controls. Display is labeled by provider format and is live-only by default. Full provider-visible retention is an explicit encrypted opt-in with a 1–30 day window; only organization administrators can inspect it, and policy changes, views, and deletions are audited. Encrypted or opaque continuation state is never available in the inspector.

Read Environments before changing execution or shared capability policy, and continue with Production operations before changing a live deployment.