Promotion is not done here. A weighing records the capture setup that produced it, and registering one arrives with the review and promotion work — until then a session is promoted from the command line.
Your authenticators
Finish setting this up
Open in your authenticator app — on this device. On another device, type the key below.
Add it as a time-based code, 6 digits, 30 seconds. Then type what the app shows:
Prove a code now
Confirming a code marks this session as having proved a second factor — which is what lets you add or remove an authenticator, or generate new recovery codes. Proving it here does not affect any other session you have open.
Recovery codes
Save these now. They are shown once and cannot be shown again — and generating a new set stops the old one working.
A role and its three capabilities are saved together, because the database couples them: a store administrator holds all three and a viewer holds none.
Invite someone to this store
Invitations
Counts only. What is in a store needs access to that store — an organisation role does not grant it, which is why each row says what yours is.