---
title: "Platform Administration and Oversight | Agent Barn"
canonical: "https://agentbarn.dev/guides/platform-administration"
pubDate: "2026-08-25T00:00:00.000Z"
updatedDate: "2026-08-29T16:41:32.000Z"
author: Agent Barn
description: "Use Platform View for bounded user, Organization, activity, privilege, and Event Delivery oversight."
tags: [Platform guide, Platform administrators, Agent Barn]
categories: [Guides]
---

# Platform Administration and Oversight

Platform authority is intentionally separate from Organization Membership. Platform View exposes dedicated, allowlisted projections and administrative workflows without turning a Platform Administrator into a tenant user.

## Guide details

- Reference: GD-09
- Type: Platform guide
- Audience: Platform administrators

## Scope note

Organization suspension, the unified security-audit explorer, and several detailed oversight dashboards are documented roadmap items, not current product behavior.

## Current administration surface

Platform Administrators can list users and Organizations, provision pending users with an initial Organization, resend invitations, and grant or revoke Platform Privilege with a reason. Privilege changes reject no-ops, self-revocation, and removal of the final Platform Administrator.

## Current oversight data

Platform View includes allowlisted Organization and user identity detail, Membership drill-downs, current Agent counts, cross-Organization chat volume, and Agent activity statistics. Period and filters can narrow by Organization, Agent, creator, or chat Platform. Sender identity and tenant content are excluded.

## Event Delivery monitoring

A read-only global monitor shows Event Delivery counts, stale/unknown ages, and a filtered explorer. It reads PostgreSQL rather than raw Redis and exposes safe operational metadata, not the event envelope or full payload. Retry, replay, remapping, and deletion are intentionally absent.

## Deferred platform work

The backlog proposes Organization suspension with immediate access denial and asynchronous runtime cleanup, a unified searchable Security Audit explorer, and deeper Agent, Tool Call, model, and cost oversight. Suspension must commit before cleanup and reactivation must wait for cleanup completion; these are accepted design constraints for future implementation, not shipped controls.

## Data boundary

Platform oversight must never expose conversation content, tool arguments or results, logs, prompts, Templates, Skills, Agent configuration, credentials, or raw Telemetry. New fields require explicit data-classification and authorization review.
