Krizaka
Documentation
Operations

Administration

For decision-makers

What an administrator controls — models, the interceptor pipeline, capabilities, MCP servers, plans, prices, wallets, Studios — from the SecOps console or the API, and how that surface is secured. Generated from the code.

🤖 Generated from code by scripts/generate-docs.mjs — do not hand-edit. Run orazaka docs build to refresh.

Everything commercial and operational in Orazaka is data an administrator edits — models, the interceptor pipeline, capabilities, MCP servers, plans, prices, wallets, Studios — never a redeploy. An administrator is an account holding ROLE_ADMIN, granted by the identity service; every administrative endpoint checks it on the server (@PreAuthorize), whatever client calls it.

The SecOps console (orazaka-web-admin)

A Next.js console (port 3001) started with the rest of the stack by orazaka dev (--skip-admin to leave it out).

ScreenWhat it is forTabs
/Renders the remastered SecOps console landing.—
/billingThe billing console.Consommation · Tarifs par modèle · Tarifs par capacité · Offres · Packs métier · Portefeuilles
/studiosThe Studio Builder console (ADR-034 §12.4).—

Billing — consumption per capability and model, refusals included

Billing — consumption per capability and model, refusals included.

Billing — the plans and what each one grants

Billing — the plans and what each one grants.

Billing — the price book: credits per unit for every capability and model, versioned

Billing — the price book: credits per unit for every capability and model, versioned.

Studios — the blueprint editor: versions, credits, steps and forms

Studios — the blueprint editor: versions, credits, steps and forms.

The console's screens are in French for now, and it ships no sign-in page yet (orazaka-web-admin#5): every administrative action is also an endpoint, listed below.

How the console is secured

  • Sign-in by credentials only — no social login: the role that matters is granted by the identity service, and an account without ROLE_ADMIN is refused a console session.
  • A backend-for-frontend — the browser never reaches a service port: /api/v1/** is proxied server-side, the session token injected as Authorization: Bearer.
  • No internal surface — /internal/v1/** (credit holds and settlements, registries) is not in the edge's route table, so the console cannot reach it by construction.

What the console calls

MethodPathAccessSummary
GET/api/v1/features/allADMINAdmin: all capabilities (enabled or not) from the database.
GET/api/v1/models/catalogauthenticatedRetrieves the complete AI model catalog definitions from the database.
GET/api/v1/billing/configurationADMINThe declared key vocabulary — type, permitted domain and code default per key.
PATCH/api/v1/billing/configurationADMINApplies one validated configuration change.
GET/api/v1/billing/packsauthenticatedThe priced catalogue.
DELETE/api/v1/billing/packs/{packKey}ADMINWithdraws a pack from sale.
GET/api/v1/billing/packs/{packKey}authenticatedOne pack with its entitlement matrix.
PUT/api/v1/billing/packs/{packKey}ADMINCreates or replaces a pack's price and entitlements.
GET/api/v1/billing/plansauthenticatedThe catalogue.
DELETE/api/v1/billing/plans/{planKey}ADMINRetires a plan — deactivated, never deleted, because subscriptions reference it.
GET/api/v1/billing/plans/{planKey}authenticatedOne plan with its entitlement matrix.
PUT/api/v1/billing/plans/{planKey}ADMINCreates or replaces a plan.
GET/api/v1/billing/pricebookADMIN—
POST/api/v1/billing/pricebookADMIN—
POST/api/v1/billing/pricebook/previewADMIN—
DELETE/api/v1/billing/subscriptions/{actorId}ADMINEnds an actor's subscription.
GET/api/v1/billing/subscriptions/{actorId}ADMINThe subscription in force for an actor.
POST/api/v1/billing/subscriptions/{actorId}ADMINMoves an actor onto a plan — upgrade, downgrade or trial.
GET/api/v1/billing/usage/capabilitiesADMINConsumption and refusals per capability × model.
GET/api/v1/billing/usage/top-consumersADMINThe heaviest consumers.
GET/api/v1/billing/wallets/{actorId}ADMINReads an actor's balances.
POST/api/v1/billing/wallets/{actorId}/adjustmentsADMINIssues a manual credit adjustment — support goodwill, or a claw-back.
GET/api/v1/billing/wallets/adjustments/todayADMINWhat an admin has already adjusted today, against their ceiling.
GET/api/v1/studiosauthenticatedThe catalogue, optionally narrowed to one profession.
GET/api/v1/studios/{studioKey}authenticatedOne Studio's detail, including the schemas its forms are generated from.
GET/api/v1/studios/{studioKey}/blueprintsADMINEvery version of a Studio, drafts included — the Builder's version list.
DELETE/api/v1/studios/{studioKey}/blueprints/{version}ADMINDeprecates a version without deleting it.
PUT/api/v1/studios/{studioKey}/blueprints/{version}ADMINCreates or replaces a draft version.
POST/api/v1/studios/{studioKey}/blueprints/{version}/publishADMINPublishes a draft, minting it as the Studio's latest version.

Every ADMIN-only endpoint

What an administrator can do, by service — from the console, the CLI or any HTTP client with an administrator's token (through the edge, http://localhost:8088 locally).

conversation-service

MethodPathSummary
PUT/api/v1/features/{featureKey}Admin: toggles an existing capability's enabled state.
GET/api/v1/features/allAdmin: all capabilities (enabled or not) from the database.
GET/api/v1/jobs/active-connectionsRetrieves the current active SSE connection count.
POST/api/v1/jobs/purgePurges jobs, chat sessions and rate-limit cache for the default test accounts.
GET/api/v1/mcp/servers/platform—
POST/api/v1/mcp/servers/platform—
DELETE/api/v1/mcp/servers/platform/{id}—
POST/api/v1/modelsAdds a new model definition to the catalog.
DELETE/api/v1/models/{id}Deletes a model definition by its database ID.
PUT/api/v1/models/{id}Updates an existing model definition in the catalog.
GET/api/v1/pipeline/interceptorsRetrieves all pipeline interceptor configurations ordered by execution order.
PUT/api/v1/pipeline/interceptorsBulk-updates pipeline interceptor ordering and enabled state.
POST/api/v1/pipeline/interceptors/resetResets all pipeline interceptor configurations to hardcoded defaults.
GET/api/v1/pipeline/validationRetrieves all validation pipeline tier configurations ordered by execution order.
PUT/api/v1/pipeline/validationBulk-updates validation pipeline tier ordering and enabled state.

krizaka-billing-service

MethodPathSummary
GET/api/v1/billing/configurationThe declared key vocabulary — type, permitted domain and code default per key.
PATCH/api/v1/billing/configurationApplies one validated configuration change.
GET/api/v1/billing/pack-subscriptionsEvery live holder of a pack — what an admin checks before withdrawing one.
GET/api/v1/billing/pack-subscriptions/{actorId}The packs one actor holds.
DELETE/api/v1/billing/packs/{packKey}Withdraws a pack from sale.
PUT/api/v1/billing/packs/{packKey}Creates or replaces a pack's price and entitlements.
DELETE/api/v1/billing/plans/{planKey}Retires a plan — deactivated, never deleted, because subscriptions reference it.
PUT/api/v1/billing/plans/{planKey}Creates or replaces a plan.
GET/api/v1/billing/pricebook—
POST/api/v1/billing/pricebook—
GET/api/v1/billing/pricebook/history—
POST/api/v1/billing/pricebook/preview—
GET/api/v1/billing/subscriptionsEvery live subscriber of a plan — what an admin checks before retiring one.
DELETE/api/v1/billing/subscriptions/{actorId}Ends an actor's subscription.
GET/api/v1/billing/subscriptions/{actorId}The subscription in force for an actor.
POST/api/v1/billing/subscriptions/{actorId}Moves an actor onto a plan — upgrade, downgrade or trial.
POST/api/v1/billing/subscriptions/{actorId}/rolloverRolls a subscription into its next period, honouring a pending cancellation.
GET/api/v1/billing/usage/capabilitiesConsumption and refusals per capability × model.
GET/api/v1/billing/usage/top-consumersThe heaviest consumers.
GET/api/v1/billing/wallets/{actorId}Reads an actor's balances.
POST/api/v1/billing/wallets/{actorId}/adjustmentsIssues a manual credit adjustment — support goodwill, or a claw-back.
GET/api/v1/billing/wallets/{actorId}/entitlementsReads an actor's effective entitlements plus their balance summary.
GET/api/v1/billing/wallets/adjustments/todayWhat an admin has already adjusted today, against their ceiling.

studio-service

MethodPathSummary
GET/api/v1/studios/{studioKey}/blueprintsEvery version of a Studio, drafts included — the Builder's version list.
DELETE/api/v1/studios/{studioKey}/blueprints/{version}Deprecates a version without deleting it.
PUT/api/v1/studios/{studioKey}/blueprints/{version}Creates or replaces a draft version.
POST/api/v1/studios/{studioKey}/blueprints/{version}/publishPublishes a draft, minting it as the Studio's latest version.
POST/api/v1/studios/packs/bundlesInstalls a bundle.
DELETE/api/v1/studios/packs/bundles/{bundleKey}Removes a bundle's catalogue rows and withdraws its pack from sale.
POST/api/v1/studios/packs/bundles/validationChecks a bundle against this platform without writing anything.

Product overview →

On this page