Admin guide

Everything in this guide lives under Settings and is visible to administrators only (team leaders see the Guide and their team's approvals).

Roles and access

RoleCan
AdministratorEverything: people, invitations, approvals, section access, billing, data, integrations
Team leaderManage their own team, invite people, approve their team's leave and working-hours requests, propose extra access (an administrator approves)
Team memberUse the shared sections plus any sections granted to them

Modules

Settings → General → Modules switches whole sections on or off for the workspace (tasks, mind maps, portfolios, workflows, calendar, workload, risk radar, CRM, people, team, finance, bills, reports, sustainability, SOPs, learning, messages, activity). Hidden modules keep their data.

Workflow & fields

Notifications

Choose which events send in-app notifications and emails (assignments, mentions, approvals, due-soon reminders, weekly recap). Email needs SMTP or a transactional provider configured on the server (see Installation & upgrades). Web-push subscriptions are stored when VAPID keys are configured.

Integrations

Subscribers (platform owner only)

If your email is on the NOVUHUB_ANALYSIS_OWNER_EMAILS allow-list, Settings gains a Subscribers tab: monthly recurring revenue, annual run rate, paying customers, trials, billed seats, average revenue per customer, a per-plan breakdown and every workspace with its plan, status, seats, value and renewal date. Prices come from the plan configuration (NOVUHUB_PLANS); a workspace's value is its plan price × billed seats. The tab does not exist for any other workspace and the endpoint behind it refuses anyone else. No card or bank data is involved — that stays with the merchant of record.

Billing

Seats are counted from active members. When billing is enabled on the server the Billing tab shows the plan, seat count, trial or grace period and a Manage subscription button that opens the merchant-of-record's hosted checkout. NovuHub never sees card or bank details; the provider sends signed webhooks that update the subscription state.

Data & privacy

Security

Single sign-on and provisioning

OpenID Connect sign-in and SCIM provisioning are configured on the server by the operator; once enabled the login page shows the SSO button and your identity provider creates, updates and deactivates accounts automatically. See Single sign-on & provisioning.

Public pages your customers may see

PagePurpose
/help/<token>Public help centre built from your knowledge base, with a feedback form
Lead formPublic form that creates CRM contacts
Booking pagePublic appointment booking into the calendar
/statusLive service status
/changelog, /developersRelease notes and API reference