Masterplan Optimiser
Step 7 of 7100%

Review runtime security and audit history

Security, High Availability and Audit serve different questions. Use Security for bounded runtime settings, High Availability for cluster state, and Audit Log to review recorded administration. Runtime changes require recent root-passkey re-authentication.

Check activation email

The Security tab shows whether deployment-managed SMTP is ready, the sender identity and TLS mode. It can send a token-free test message and can invalidate every active activation/passkey-reset link. SMTP credentials are never shown in the browser.

Review runtime security groups

Session Lifetimes

Participant, administrator and inactivity limits.

Offline Access

How long an authenticated calendar may remain available offline.

Authentication

Recent re-authentication window and activation-link lifetime.

Passkeys

Challenge, exchange-code, re-authentication and request-rate limits.

Data Retention

Revoked/expired sessions, used links, audit entries and secret age.

Desktop Publishing

Masterplan and public schedule publish rate limits.

Limits

Maximum schedule snapshots and announcements per event.

Use the Audit Log tab

The separate Audit Log tab filters application actions by actor, action, resource and time, with expandable sanitised details. It does not expose raw passkey challenges, activation tokens, SMTP credentials or private recovery identities.

Root audit log with synthetic NSC Glarus administration entries
The audit view shows bounded action, outcome, resource and time information without exposing credentials or private keys.

Infrastructure operations have a separate hash-chained MP-OPT audit trail. See MP-OPT Management Console.