IT and security

Manage deployment, access, and AI settings in one place.

Administrators can review deployment settings, configure sign-in and permissions, choose an AI provider, manage review settings, and export organisation data.

Common problems

Administration gets harder when related settings live in different places.

IT and security teams need to see what is configured and where responsibility sits.

Deployment settings are hard to trace

Application services, storage, sign-in, AI, and backup responsibilities are often reviewed separately.

Access rules become inconsistent

Organisation roles, project membership, document restrictions, and identity mappings can drift apart over time.

AI settings are easy to overlook

The provider, available context, and review process all need to be checked before AI is enabled.

In TOW

What administrators can configure.

Deployment, access, and AI have separate settings so each area can be reviewed on its own.

Review the deployed environment

See the active deployment mode, public endpoint, application service, and storage settings in the admin area.

  • Deployment mode and config path
  • Public endpoint and service settings
  • Upload storage setting

Choose a sign-in method

Set up Microsoft Entra ID, Okta, Google Workspace, Active Directory, or a generic SAML or OIDC provider.

  • Common and generic identity providers
  • SAML, OIDC, LDAP, and LDAPS
  • Setup for the selected provider

Configure or disable AI

Choose the organisation provider, review its endpoint and models, and check whether an API key is configured.

  • Enable or disable the provider
  • Endpoint and model settings
  • API key status

Before deployment

Check TOW against your own requirements.

TOW provides security and deployment settings, but your organisation still decides how to meet its certification, residency, backup, and operating requirements.

FAQ

Questions worth answering clearly.

Current product, deployment, and commercial boundaries.

Can TOW use our OIDC provider?

TOW includes OIDC provider settings and attribute mapping. You should check your provider, claims, and login policy as part of deployment planning.

Can administrators disable or configure AI?

Yes. Administrators can set the provider endpoint and model, check credential status, or disable AI. Self-hosted teams are responsible for the provider they choose.

Is organisation export a disaster-recovery guarantee?

No. An export gives you a portable copy of organisation data. Backup, restore, retention, recovery targets, and testing need their own plan.

See TOW in your environment

Bring work, knowledge, and review into one controlled workspace.

Product screenshot