πŸ”‘

Gatehouse

Advocate platform access control. Sign in with your VFC account to manage grants.

πŸ”‘

Gatehouse

Advocate platform Β· access control

Signed in as
β€”
β€”

Start here

How to grant someone access

Access is granted per service. A grant only ever raises what a person can do in one service β€” it never touches their access anywhere else, and removing it puts them back exactly where they were.

  1. 1Find the person. Enter their VFC email below β€” just the name part (matt) is enough β€” and select Look up to see everything they currently hold.
  2. 2Choose the service and role. Pick the service (e.g. Medic) and the role you want them to have (e.g. Team lead). For Citadel, also choose a level. A VSR or Onboarding role also needs a team. An admin role takes no team and no level.
  3. 3Grant it. Select Grant access. It's recorded against your name, so there's always an audit trail of who granted what.
  4. 4It takes effect within ~60 seconds. Ask them to refresh the app. To undo, select Revoke on the row β€” same ~60-second window.
The floor is automatic. Everyone signed in already has the baseline role for a service (Medic β€œstaff”, Citadel β€œviewer”). You only grant something above that β€” so there's no such thing as granting basic access.
Delegating. Grant someone the admin role in a service and they can manage grants for that service here β€” without any access to the others.

Roles you can grant

Medic
staff Β· floorpartnershipsteamleadadmin
Citadel
viewer Β· floorVSROnboardingPIILCSCFinanceAppealsSocialWorkeradmin
Senate
team_leader Β· floorgmcooauthorhead_of_advocacyctocosld_officeradmin
Reviews
staff Β· floordeveloperadmin

1 Β· Look up a person

See what a person holds across all services.

Just the name is enough β€” matt becomes matt@veteransfirstconsulting.com. Paste a full address for anyone outside that domain.

2 Β· Grant access

Add a role for .

Audit

All access by service

Everyone who holds a role above the baseline in a service β€” a full roster you can review or revoke from.

Directory

Staff

Everyone in Google Workspace. The name and manager come from Workspace and are read-only here. If a person holds a Citadel grant, Role, Team and Level show that grant: select the name to change it in Look up a person. If a person holds no Citadel grant, you can set Role, Team and Level here. That gives no access, and a Citadel grant given later replaces it. The Monday person, the availability flag and the type are ours too. Type is a label only: Google still owns access, so a Retired row with a live Workspace account still signs in. Select a column heading to sort it. The boxes under the headings filter one column each. The System and Retired rows are hidden until you search for one, filter Type, or clear the box below. A Monday id that was matched on email is locked, because a save by hand relabels the binding.

Staff directory
Changes take effect within ~60 seconds Β· every grant & revoke is audited dev