CRAYS

Settings

UsersRolesModulesIntegrationsData sync

Unified operating platform

Deal Manager

Event-driven dashboards

Settings

Admin areas

OverviewUsersRolesPermissionsModulesOrganizationsStudiosBillingIntegrationsSecurityAudit LogNotificationsBrandingData Sync
AdminAdapter-ready

Data Sync

Control mappings, sync jobs, outbox events and adapter data movement.

Owner

Platform Admin

Core records

4

Permission gates

1

Sync controls

Readiness gates

Source smoke, reconciliation, audit, cleanup, package and write-candidate gates in one operator view.

Tracked gates

7

Disabled gates

...

Control actions

Disabled

Gate status

Source evidence
ready
...
Write decision
ready
...
Reconciliation
ready
...
Audit events
ready
...
Seed cleanup
ready
...
Package readiness
ready
...
Write candidate
ready
...

Blocked by default

Source writesSync writesRetriesReconciliationProvider callsUploadsExternal sending

Localhost adapter coverage

Surface-to-adapter proof

Checks every visible Localhost surface against Core objects, source maps, command drafts, adapter readiness and closed gates.

Surfaces

...

Live bound

...

Command-bound

...

Read-model bound

...

Needs binding

...

Source maps

...

Surface coverage

Every main Localhost route must be tied to an adapter, Core model, command model or gated shell.

Core sync proof

Schema...
Connections...
Source maps...
Sync jobs...

Top binding gaps

Verification path

Source smoke evidence

Bounded read-only probes

Project, CRM, ERP and Files endpoint evidence from the approved read-only inspection window.

Modules

...

Endpoint reviews

...

Bounded smokes

...

Runtime calls observed

...

Write adapters

...

Evidence modules

Still blocked

Source writesSync writesProvider callsUploadsExternal sendingPayload bodiesRuntime calls

Write decision

...

Next review

...

Module coverage

Connected workspace coverage

Module surfaces, settings parity and governed action staging through the current approval boundary.

Coverage

...

Modules

...

Panels

...

Write adapters

0

Approval

...

Module coverage

Approval boundary

Further connected actions require product review before additional approvals open.

Closed controls

Source writes
Provider calls
Uploads
External sending
Production deploy

Workspace coverage

Operational module coverage

Coverage for CRM, Files, ERP, Analytics and Loans, followed by cross-module QA and handover.

Coverage

...

Modules

...

Closeout

...

Writes

0

Next review

Approval review

Module deepening

Approval boundary

Further module expansion requires product review before any new external or write action opens.

Closed controls

Source writes
Provider calls
Live AI calls
Uploads
External sending
Production deploy

Role tool function matrix

Role capability matrix

Role-scoped coverage for every tool surface and function family before controlled Dev writes or sync are opened.

Roles

...

Tools

...

Families

...

Entitlements

...

Capabilities

...

Departments

...

Missing keys

...

Role coverage

Tool entitlements are scoped by role, surface and current execution mode.

Capability scopes

Function families

Closed controls

Live source calls
Source writes
Sync writes
Uploads
External sending
Finance writes
Bank sends
Production deploy

Controlled Dev write models

Controlled command model

CRAYS Core command envelopes before any tool apply, sync apply, upload, external send, finance action, bank action or release gate is opened.

Command models

...

Model ready

...

Apply ready

...

Blocked apply

...

Exact gate

...

Command runway

Model-ready CRAYS Core commands. Tool apply remains blocked.

Envelope

Gate checklist

Closed controls

Tool apply
Sync apply
Uploads
External sending
Finance actions
Bank actions
Releases

Core command persistence

Command persistence

Product-Fit checked CRAYS Core command store and guarded command staging before any external apply gate opens.

Schema

...

Tables

...

RLS gaps

...

Rows returned

0

Tool apply

Off

Guarded command routes

Routes stage CRAYS Core commands only; apply and external side effects stay closed.

Project work item

/api/crays/core-command/project-work-item

Core only

Confirmation: stage-project-work-item-command

CRM activity

/api/crays/core-command/crm-activity

Core only

Confirmation: stage-crm-activity-command

Files package

/api/crays/core-command/files-package

Core only

Confirmation: stage-files-package-command

ERP finance

/api/crays/core-command/erp-finance

Core only

Confirmation: stage-erp-finance-command

Loans checklist

/api/crays/core-command/loans-checklist

Core only

Confirmation: stage-loans-checklist-command

Sync preview

/api/crays/core-command/sync-preview

Core only

Confirmation: stage-sync-preview-command

Product-Fit Check

This command store exists only when it serves the full CRAYS journey and keeps gates closed.

Command tables

Preserved functions

Closed gates

Pilot Workflow charter

Pilot workflow charter

End-to-end pilot scope across property, evidence, economics, Candidate intent, bank package readiness and opening handoff.

Phases

10

Roles

11

Surfaces

15

QA evidence

5

Apply ready

0

Pilot phases

Role-owned phases before exact apply, send, upload or release gates.

601-610

Pilot Workflow Charter

admin

One reviewed journey, record scope, gate map and QA model before workflow build.

Core: pilot scope, role gate matrix, QA evidence model

Surfaces: Settings, Dashboard, Sync

Gate: No production or public release approval.

611-620

Owner Property Check Flow

expansion-manager

Owner or internal property check is traceable in CRAYS Core Dev/Pilot scope.

Core: property case, owner profile, property fit gates

Surfaces: CRM, Real Estate, Files, Analytics

Gate: Owner submission writes and uploads remain closed without exact approval.

621-630

Location, Rent and Deal Economics

finance

Property, evidence, rent potential and deal economics are reviewed from Core records.

Core: location evidence, rent potential, deal economics, benchmark KPI

Surfaces: Analytics, ERP, CRM, Files

Gate: Live external reads and finance writes remain closed.

631-640

Prepared Deal Assembly

deal-manager

Internal package joins property, evidence, economics, files, project and CRM signals.

Core: prepared offer, evidence package, document package, project signal

Surfaces: CRM, Files, Project, ERP, Analytics

Gate: Candidate and public release remain closed.

641-650

Candidate Deal Room Pilot

deal-manager

Candidate sees only release-gated package, evidence, economics, questions and status.

Core: candidate deal room, released evidence shell, candidate question thread

Surfaces: Candidate Portal, CRM, Files, Chat

Gate: Regulated checks and external sending remain closed.

651-660

Candidate Evidence and Intent

deal-manager

Candidate questions, intent and checklist actions become controlled Core command intent.

Core: candidate intent, candidate checklist, communication event, core command

Surfaces: Candidate Portal, CRM, Files, Loans

Gate: Bank workflow start remains closed without exact approval.

661-670

Bank Evidence / Financing Package

finance

Bank Partner receives a release-gated pilot shell with evidence and checklist status.

Core: bank package shell, evidence classification, loan checklist, condition status

Surfaces: Loans, Files, ERP, Bank Partner Portal

Gate: Bank send, payment and lender release remain closed.

671-680

Franchise Partner Opening Handoff

franchise-partner

Approved internal candidate state feeds opening tasks, milestones, files and contacts.

Core: opening project, milestone, document checklist, contact map

Surfaces: Project, Files, Operations, ERP, Support

Gate: Tool/source apply remains closed without exact approval.

681-690

Cross-role Dashboards and Audit

crays-management

Every role sees one scoped Core truth through dashboards, events, KPIs and blockers.

Core: workflow event, KPI snapshot, audit event, gate state

Surfaces: Dashboard, Analytics, CRM, Project, Loans

Gate: Unreviewed visibility expansion remains closed.

691-700

Pilot Closeout / Release Decision

reviewer

Full pilot evidence, QA, audit and gate review decide what can move toward beta.

Core: pilot evidence report, QA result, gate review, release decision

Surfaces: Settings, Analytics, Dashboard, Files

Gate: No automatic production approval.

Role ownership

expansion-manager

Owner property check, property supply and property-case review before deal attachment.

Owner and property data only within assigned property/deal scope.

deal-manager

Prepared deal execution, Candidate communication, intent review and opening handoff coordination.

Candidate and deal data only after role-scoped release gates.

finance

Deal economics, bank package checklist, finance evidence and payout readiness inputs.

Finance and bank package fields stay internal until explicit release.

franchise-candidate

Own questions, own intent and own gated checklist acknowledgements.

No bank, owner private or unreleased internal records.

bank-partner

Released lender package review and condition feedback after approval gates.

No pre-KYC browsing or unreviewed candidate/deal data.

franchise-partner

Own opening handoff tasks, milestones, documents and operating readiness.

No cross-partner or unreleased candidate scope.

QA evidence

Contract route

Readiness route returns role-scoped charter, boundaries and zero live records.

Settings visibility

Settings/Data Sync shows Pilot Workflow charter with phase, role, gate and QA evidence state.

Contract verifier

Route is covered for internal, scoped and forbidden roles.

Localhost smoke

Localhost renders the charter and preserves explicit role state after reload.

Gate audit

All high-risk gates stay false until exact approval.

Closed controls

Live external reads
Source writes
Sync writes
Tool apply
Uploads
External sending
Candidate release
Bank send
Finance writes
Production deploy

Next inputs

611-620

Property case scope, owner/internal entry mode, review roles and owner submission gate posture.

621-630

Location evidence, rent potential, deal economics and benchmark KPI read-model requirements.

631-640

Prepared package sections, evidence/doc/project/CRM signal map and release-state checks.

641-700

Candidate, Bank, Partner, dashboard and closeout gates before external visibility expands.

Property intake

Property fit and handoff

Review property fit, evidence, documents and handoff readiness before the deal moves into the next workflow.

Property cases

0

Handoff ready

0

Location

0/0

Documents

0/0

Events

0

Apply ready

0

Current property case

Use this workspace to qualify the property and prepare the next handoff.

No private property review records are visible for this role.

Property intake channels

Internal manual property checkAvailable

Expansion can review the real Core property case, status, events, evidence and handoff readiness.

Owner digital handoff shellNeeds approval

Owner-facing data entry and uploads stay closed until one exact submission gate is opened.

Property feed normalizationNeeds approval

External or imported property feed apply remains gated; Core review can still display normalized state.

Available actions

Review property evidenceAvailable
Prepare owner update requestNeeds approval
Create bank packageAfter finance review

Connected workflow

Property intake and qualification queueOwner, company and person context through shared Core recordsWorkflow events, notes, tasks and status changesDocument links, evidence package and review stateOwner data submission and file uploadExternal property enrichment or live source reads

Location, Rent and Deal Economics pilot

Location and rent economics

Location evidence, rent potential, benchmark KPIs and deal economics are reviewed from shared CRAYS Core records before package assembly.

Pilot cases

0

Prepared offers

0

Location

0/0

Current rent

0

Current economics

0

Benchmark ready

0/0

Current economics review

The pilot case stays internal until rent, economics and finance review are ready.

No private economics review records are visible for this role.

Benchmark context

Prepared deals0
Property checks0
Location ready0
Rent models0
Economics models0

Side-effect gates

Live external readsfalse
Finance writesfalse
Accounting exportfalse
Tool applyfalse
Candidate releasefalse
Bank package creationfalse

Preserved functions

Location score and catchment evidence review
Rent range, sensitivity and market context review
Deal economics scenarios and prepared deal score
Finance assumption review before package assembly
Live location refresh and external enrichment
Finance writes, accounting export, bank send and payments

Visible surfaces

AnalyticsERPCRMFilesSettings

Prepared Deal Assembly pilot

Prepared deal assembly

Property, evidence, documents, economics, Project signals and CRM activity are assembled into an internal package view before any Candidate or Bank release.

Packages

0

Prepared offers

0

Evidence

0

Documents

0/0

Project signals

0

CRM signals

0

Internal package assembly

The package is internal until the next release-gated Candidate flow approves sections.

No internal prepared package records are visible for this role.

Module signals

Project0
CRM0
Files0
ERP0
Analytics0
Loans0

Side-effect gates

Package writesfalse
Tool applyfalse
Candidate Deal Roomfalse
Candidate releasefalse
Bank package creationfalse
External sendingfalse

Preserved functions

Internal prepared deal checklist and package readiness
Property, owner, prepared offer and activity context
Document, evidence and approval linkage
Opening project handoff signals and task command intent
Finance assumption and economics review state
Candidate deal room and external package release
Bank package creation and lender release

Visible surfaces

CRMFilesAnalyticsERPProjectSettings

Benchmark context

Prepared deals0
Rent ready0
Economics ready0

Candidate Deal Room pilot

Candidate deal room

Candidate-facing package sections, questions and intent preparation stay release-gated while Deal Manager reviews the shell from real CRAYS Core pilot state.

Internal packages

0

Candidate-visible

0

Sections

0

Release required

0

Ready gates

0/0

Messages

0

Candidate room stages

Sections and questions are visible only as a controlled shell until release approval.

Closed gates

Candidate-visible recordsfalse
Candidate releasefalse
Intent writesfalse
Regulated checksfalse
External sendingfalse
Bank package creationfalse

Preserved functions

Candidate Deal Room shell and section navigation
Section-level release required state
Question and Deal Manager thread readiness
Purchase and financing intent preparation
KYC/AML, equity check and source-of-funds start
External message sending and bank package release

Visible surfaces

Sites

Candidate Deal Room shell and released-offer empty state.

CRM

Deal Manager reviews candidate-facing questions and release readiness.

Files

Package documents stay release-gated before candidate visibility.

Settings

Admin and reviewers inspect pilot gates and QA.

Candidate Evidence and Intent pilot

Candidate evidence and intent

Candidate questions, intent and review checklist actions are modeled as guarded CRAYS command boundaries while release, regulated and bank workflows stay closed.

Internal packages

0

Candidate-visible

0

Evidence

0

Intent records

0

Action models

0

Ready gates

0/0

Candidate action stages

Candidate actions are command-modeled here, not executed.

Closed gates

Candidate-visible recordsfalse
Candidate releasefalse
Intent writesfalse
Checklist commandsfalse
Regulated checksfalse
Bank workflowfalse
External sendingfalse

Preserved functions

Candidate questions and Deal Manager follow-up command intent
Released evidence and document readiness state
Purchase and financing intent preparation
Package review checklist and evidence action model
KYC/AML, equity check and source-of-funds start
Bank package workflow start and lender release

Guarded action models

Each action names the operating boundary and the review state that remains closed.

Visible surfaces

Sites

Candidate sees only the guarded evidence and action shell.

CRM

Deal Manager reviews questions, intent readiness and follow-up actions.

Files

Review checklist and evidence/package actions remain guarded before release.

Settings

Admin and reviewers inspect command readiness, gates and QA.

Readiness gates

Bank Evidence and Financing Package pilot

Bank evidence and financing

Finance package prerequisites, document evidence, Candidate intent signals and Bank Partner shell state are reviewed in CRAYS while all lender release, sends, uploads and finance writes stay closed.

Bank packages

0

Loan cases

0

Candidate intents

0

Documents

0

Work items

0

Ready gates

0/0

Financing stages

Each stage has an owner, a gate and an explicit current state.

Closed gates

Bank package creationfalse
Bank handofffalse
Lender releasefalse
Bank sendfalse
Payment initiationfalse
Finance writesfalse
External sendingfalse
File uploadsfalse

Preserved functions

Financing prerequisite checklist and condition review
Candidate purchase or financing intent signal
Document package and evidence link readiness
Bank Partner release-gated workspace shell
Loan case, financial model and conditions read model
KYC / AML, equity check and source-of-funds execution
Bank package release, bank send and payment initiation

Financing work queue

Work items name owner, CRAYS boundary, next action and closed release gate.

Visible surfaces

Loans

Finance owns prerequisites, conditions, checklist and release preparation.

CRM

Deal Manager links Candidate intent and follow-up into financing readiness.

Files

Reviewers inspect document package links and evidence requirements.

Settings

Admin verifies gates, command boundaries and QA.

Sites

Candidate and Bank shells stay release-gated.

Readiness gates

Opening Handoff pilot

Opening handoff

Approved internal readiness feeds a Project and Operations handoff cockpit with partner milestones, work items, pages and stakeholder scopes while tool apply and external notifications stay closed.

Project items

0

Handoff items

0

High priority

0

Blocked

0

Actions

0

Ready gates

0/0

Handoff milestones

Milestones show owner, readiness and the next operational action.

Closed gates

Project creationfalse
Work item writesfalse
Operations writesfalse
Tool applyfalse
Source writesfalse
Sync writesfalse
File uploadsfalse
External sendingfalse

Preserved functions

Opening work items, owners, states, priorities and dependencies
Cycles, modules, saved views and timeline planning
Opening playbook pages and scoped decision notes
Franchise Partner handoff workspace
Landlord, vendor and studio stakeholder shells
Project, Operations and Files command models
Tool apply, uploads, external notifications and release execution

Handoff action queue

Actions are command-modeled and gated before any apply or external notification.

Handoff work items

No handoff work items in this scope.

Readiness gates

Cross-role pilot audit

Cross-role audit

One scoped control tower for the end-to-end pilot chain: property, evidence, economics, Candidate intent, bank readiness and opening handoff.

Segments

0

Ready

0

Blocked

0

Release required

0

Locked

0

Audit events

0

North Star chain

Each row is a value-stream segment, not a standalone dashboard tile.

Closed gates

Visibility expansionfalse
Candidate releasefalse
Bank releasefalse
Public releasefalse
Tool applyfalse
External sendingfalse
Uploadsfalse
Finance writesfalse

Visible surfaces

Dashboard

Management and Deal Manager see one end-to-end pilot chain.

CRM

Candidate, property and deal status are connected to owner actions.

Project

Opening and handoff blockers remain visible.

Loans

Financing readiness and bank gates are tracked without release.

Files

Evidence and document gate state is aggregated.

Settings

Admin sees gate, audit and QA state.

Audit events

Readiness gates

Pilot closeout and release decision

Pilot closeout and release decision

The pilot is reviewed as one operating chain. Beta scope can be prepared, but production, releases, external reads, writes, sends, uploads, bank actions and payments stay closed.

Pilot blocks

0

Segments

0

Decisions

0

Beta-ready

0

High risks

0

Gates

0

Release decisions

Each decision separates beta preparation from release execution.

Closed gates

Automatic beta approvalfalse
Production deployfalse
Live external readsfalse
Tool applyfalse
Candidate releasefalse
Bank releasefalse
External sendingfalse
Payment initiationfalse

Risks

QA evidence

Next beta inputs

701-710

Translate pilot findings into beta roles, flows, records and risk limits.

711-720

Define Dev, Pilot and Beta data boundaries, backup, reset and retention.

721-730

Regression-test permissions, consent, audit and external-room scope.

731-750

Prepare exact live-read and low-risk apply gates without opening them automatically.

Gate decision register

Controlled beta readiness

Controlled beta release

Beta work is prepared as explicit scope, room, gate and recovery decisions. Nothing launches, deploys, releases, writes, uploads, sends or pays until a later exact gate opens it.

Beta blocks

0

Prepared

0

Blocked

0

Gate prep

0

Rooms

0

Side effects

0

Beta block register

Each block defines the work outcome and the gate that remains closed.

Closed execution gates

Beta launchfalse
Production deployfalse
Live external readsfalse
Approved apply gatesfalse
Tool applyfalse
External sendingfalse
Candidate releasefalse
Bank releasefalse
Payment initiationfalse

Recovery controls

Exact gate preparations

Prepared rooms

Operations and support queues

Operating control room

Platform work control

Coordinate role queues, active cases, handoffs, stakeholder rooms and closed execution gates from one working surface.

Workstreams

0

Ready controls

0

Prepared controls

0

Role queues

0

Case workspaces

0

Open gates

0

Work queues

Every role starts from owned work, records and next action.

No queue selected.

Closed execution gates

Live action executionClosed
Tenant provisioningClosed
Module applyClosed
File uploadClosed
External sendingClosed
Candidate releaseClosed
Bank releaseClosed
Payment initiationClosed
Production deployClosed

Session activity

No session activity staged.

Case workspaces

Acceptance criteria

Workflow actions

Stakeholder rooms

Cross-module handoffs

Control queue

Prepared deal factory

Prepared deal decision chain

Property owner fit, property supply, location evidence, deal economics, Candidate intent, bank package readiness and opening handoff as one CRAYS data chain.

Coverage

...

Stages

...

Boundaries

...

Writes

0

Next review

Product decision

Factory chain

Every prepared deal must trace through these governed stages.

North star

Loading readiness.

Decision gate

Future source reads or write adapters require a separate product decision. This view is not an approval by itself.

Closed controls

Provider calls
Source writes
Uploads
Candidate release
Bank send
Payment initiation

Required decision data

Provider evidence architecture

Evidence architecture

Internal evidence lanes for Location Intelligence, Property Feed, Banking Evidence and Source Work Items before any live read, write, upload or release.

Blocks

...

Evidence lanes

...

Adapter guards

...

Live calls

0

First path

Location Intelligence

Evidence lanes

Each lane converts external or source signals into CRAYS-owned evidence before release.

North star

Loading readiness.

Closed controls

Live provider reads
Source writes
Owner submission writes
Uploads
Candidate release
Bank send
Payment initiation

Adapter guards

Location Intelligence decision

Location Intelligence decision

Read-only adapter decision for reachability, travel-time, statistics, places and score evidence. The next step is a no-call scaffold, not a live provider read.

Decision

Read-only

Read classes

...

Field policies

...

Live read

Off

Next block

...

Allowed read classes

Each class defines bounded inputs and CRAYS-owned derived evidence.

Outcome

Loading decision.

Closed controls

Live provider read
Raw payload return
Client-side provider call
Owner submission write
Candidate release
Bank release

Field policies

Provider Evidence program

Evidence program

Controlled CRAYS evidence layer for location, property, rent, deal economics and banking readiness. Default mode is no-call and no-release.

Blocks

...

Mode

No-call

Evidence surfaces

...

Core tables

...

Live reads

Off

Block groups

Prepared program layers before any sandbox or live provider decision.

Decision scaffold

Loading no-call fixture scaffold.

Persistence

Evidence Core migration is dry-run ready. Database apply remains blocked.

Closed controls

Live provider reads
Owner submission writes
Candidate release
Bank release
Payment initiation
Production deploy

Sandbox pilot

Sandbox decision pilot

Controlled sandbox and pilot readiness for location, property, banking, owner submission, economics and release shells. Execution remains off by default.

Coverage

...

Mode

Sandbox-ready

Sandbox paths

...

Pilot surfaces

...

Execution

Off

Decision layers

Sandbox and pilot readiness layers before any selected execution gate.

Decision pack

Loading sandbox decision pack.

Closed controls

Sandbox execution
Live provider reads
Owner uploads
Candidate release
Bank release
Payment initiation

Approval boundary

Next decision is one exact path: keep no-call, approve one sandbox read, approve storage-gated owner submissions or approve explicit pilot records.

Adapter health

Module readiness

Project, CRM, ERP, Files and Sync readiness in one read-only view.

Schema ready

...

Accessible

...

Internal counts

...

Blocked scopes

...

Write actions

...

Modules

Safety policy

Read only...
Dry-run only...
Provider logs...
Environment values...
Secrets...
Private keys...

Blocked actions

Core domain

Data readiness

Schema status, domain surfaces and guarded write boundaries for prepared offers, properties, bank packages, documents and sync.

Schema

Checking

Surfaces

...

Records

...

Missing tables

...

Domain surfaces

Safety state

Live records returned...
Secrets returned...
Private keys returned...

Write boundary

Property case intake: guarded by dev confirmation and server flag.
Prepared offer intake: guarded by dev confirmation and server flag.

Permission matrix

Initial CRAYS-native permissions for this settings area.

Configure data syncControl external mappings, sync jobs, conflicts and outbox events.

Allowed roles

Admin

Scopes

global

Core records

External MapSync JobOutbox EventConflict

Guardrails

No direct cross-database writes
Conflicts require review
Events feed dashboards

Integration boundary

This page defines CRAYS policy and admin structure only. Real reads and writes must pass future API, permission and audit checks.