-
-
Notifications
You must be signed in to change notification settings - Fork 27
Portal Managers Ideas
Blue sky thinking Β· Came out of building Portal managers (discussion #62), September 2026
Ideas noticed while building managers, confidential tickets and "who has seen this ticket". Each has had enough thought to know its shape and its catch; none is committed to. Several are small. They are grouped by what they would touch.
Already done from the same list, so not here: paging and a person filter on Team tickets; telling managers about new team tickets (email or the portal bell); keeping confidential tickets away from AI, chat posts and external trackers; and making emailed links use the one HTTPS rule.
The idea. Every management line records who added it and when, but removing one leaves no trace. Granting somebody the right to read other people's tickets arguably deserves a full history: added, removed, by whom, when.
The catch. There is no general audit log to put it in. The tickets, changes and problems each have their own audit table, and nothing covers people or settings. Doing it properly probably means a small shared audit table for "security-relevant settings" (manager lines, then role and permission changes), which is a bigger decision than managers alone. A quick version - soft-deleting lines with removed_by / removed_datetime - is cheap but only ever answers this one question.
Where. manager_grants, api/tickets/manager_access.php (remove), the Manager access page.
The idea. The portal bell (the same bell as the analysts') is shown to managers today. Requesters would earn one with three events: IT replied to your ticket, its status changed, it was closed. Most useful to people who live in the portal rather than their inbox - and to directory users with no mailbox at all, who today are told nothing.
The catch. Requesters already get emails for replies, so for most people the bell is a second copy; the case rests on the no-mailbox users and on portal-first organisations. It also needs a per-person choice (bell, email, both), or the bell becomes noise and gets ignored - the exact failure the analyst bell's noise rules exist to prevent.
Where. NotificationsService::notify() with portal_user_id already works; the events come from the reply, status and close paths in includes/services/tickets.php; self-service/includes/header.php decides who sees the bell.
The idea. A ticket emailed to a confidential mailbox (HR) is confidential the moment it lands, but the person who sent it is not told until they open it in the portal. The acknowledgement email could say "this ticket is confidential: it is kept from managers".
The catch. Reassuring the sender also tells anyone reading their inbox over their shoulder that they contacted HR about something private. Probably a per-mailbox wording choice rather than on by default.
Where. The acknowledgement in api/tickets/check_mailbox_email.php, after ticketSensitivityApplyDefaults().
The idea. Record the requester's own portal views too, so an analyst can see "the customer has read your reply" - and stop chasing someone who has.
The catch. Only half the picture: most people read replies in their email, which records nothing, so "not read" would mostly be wrong. And a requester might reasonably not want the desk to know they read a reply and did not answer. Deliberately not done in step 2 for those reasons.
Where. ticketViewRecord() already takes a viewer type; api/self-service/get_ticket_detail.php records managers only.
The idea. A directory owns a person's job title, department and the rest, and the person editor greys them out. Their display name and email are synced too, but stay editable, and the next sync silently puts them back.
The catch. The email is also how some people sign in, and an analyst sometimes needs to correct an obviously wrong address before the directory is fixed. Locking it removes that escape hatch. Worth doing with a clear "change it in the directory" note, as the other fields have.
Where. USER_DIRECTORY_OWNED / userDirectoryOwnedFields() in includes/users.php, includes/directory_sync.php, includes/person_editor.php.
The idea. Change a synced person's company in the person editor and directory sync changes it back. Either sync should leave a hand-set company alone, or the editor should say it will not stick.
The catch. "Leave it alone" needs a record that the company was set by hand, which is a new column and a precedence rule - and the directory is usually right. Telling the analyst is cheaper and honest.
Where. The company step of includes/directory_sync.php; the person editor.
Housekeeping, not an idea. Directory Sync Β§3.12 and Β§7.8 still describe an earlier plan: one System β Users screen. What was built instead is one shared person editor opened from Tickets β Users and Assets β Users (Contact details β Developer Guide Β§4). Reword those sections, or record why the screen was not built.
The idea. A new ticket is announced once, by ticketDispatchCreated() - which drives ticket.created workflows, the analysts' bell, search indexing and now manager notifications. Tickets from web chat, WhatsApp and the request catalogue (and splits and merges) never call it, so none of those see them.
The catch. It is a behaviour change for anyone with a ticket.created workflow: rules that have never fired for web chat would start to. Worth doing, with a release note that says so, and checking each path applies the confidential defaults before it announces - the order manager notifications depend on.
Where. includes/webchat/webchat.php, includes/messaging/ingest.php, includes/catalogue_approvals.php, includes/ticket_split.php, includes/ticket_merge.php.
FreeITSM β an open-source IT Service Management platform Β· github.com/edmozley/freeitsm Β· MIT licence
- Installation
- β° Scheduled tasks (cron jobs)
- Architecture
- π§ͺ Developer tests
- AI Providers
- Internationalisation (i18n)
- Timezones & Time Handling
- π Date & Time Formats
- Theming & Dark Mode
- ποΈ Recent β getting back to what you were doing
- β¨οΈ Command palette (βK)
- π Searching inside tickets
- π Attached documents
-
MobileβFriendly
- β³ π« Mobile: Tickets
- β³ π» Mobile: Assets
- β³ π Mobile: Calendar
- β³ π Mobile: Knowledge
- β³ π¦ Mobile: Service Status
- β³ πΌ Mobile: Watchtower
- β³ π§© Mobile: Problem Management
- β³ π Mobile: Change Management
- β³ πΏ Mobile: Software
- β³ β Mobile: Tasks
- β³ π Mobile: Forms
- β³ π Mobile: Contracts
- β³ π Mobile: Domains
- β³ π Mobile: People
- β³ π Mobile: LMS
- β³ πΊοΈ Mobile: CMDB
- β³ πΊοΈ Mobile: Network Mapper
- β³ π§ Mobile: Process Mapper
- β³ βοΈ Mobile: Workflow
- β³ π₯οΈ Mobile: System
- β³ π Mobile: Reporting
- β³ π Mobile: System Wiki
- β³ π Mobile: Self-Service Portal
- β³ π§° Mobile: Techniques & Tricks
-
Security
- Layer 1 β which modules you can enter
- β³ π§© Module Access Control
- β³ π οΈ Module Access β Developer Guide
- Layer 2 β what you can administer
- β³ π Roles & Permissions
- β³ π οΈ Roles β Developer Guide
- β³ π€ Why capabilities are constants
- Layer 3 β the System module
- β³ π Admin Access Control
- Hardening
- β³ π Security review response 2026-08
- β³ π‘οΈ Security hardening 2026-08
- β³ π οΈ Security hardening 2026-08 β Developer Guide
- β³ π‘οΈ Round three β plain English
- β³ π οΈ Round three β Developer Guide
- β³ π‘οΈ CSRF protection (S4) β Developer Guide
- Single Sign-On (SSO)
- ποΈ LDAP & Active Directory
- π CardDAV contact sync
- Browser Extension
- API Reference
-
π REST API β how it works
- β³ π« REST API: Tickets
- β³ π» REST API: Assets
- β³ π΄ REST API: Problems
- β³ π REST API: Changes
- β³ π REST API: Knowledge
- β³ β REST API: Tasks
- β³ ποΈ REST API: CMDB
- β³ π REST API: Contracts
- β³ ποΈ REST API: Calendar
- β³ πΏ REST API: Software
- β³ π REST API: Domains
- β³ π¦ REST API: Service Status
- β³ βοΈ REST API: Morning Checks
- β³ π REST API: Forms
- β³ βοΈ REST API: Workflow
- β³ π·οΈ REST API: Cost centres
- β³ πΊοΈ REST API: Network Mapper
- β³ π§ Using the API docs page
- β³ π OpenAPI specification
- β³ β OpenAPI: kept correct
- β³ π οΈ Maintaining the catalogue
- Watchtower
-
Tickets
- β³ π Rota copy and paste β Developer Deep Dive
- β³ β Checklists & SOPs
- β³ βοΈ Mandatory fields
- β³ π·οΈ Ticket categories
- β³ π₯ Assigning tickets to a team, and escalation
- β³ π’ One board across every company
- β³ Mailbox Authentication
- β³ π€ Email send log
- β³ Basic IMAP mailboxes
- β³ Email rendering & images
- β³ SLA Management
- β³ WhatsApp channel
-
β³
βοΈ Telegram channel - β³ β CSAT company scope and filters β Developer Guide
- β³ π₯ Microsoft Teams channel
- β³ π¨οΈ Mattermost channel
- β³ π¬ Web chat channel
- β³ π£ Slack channel
- β³ π Linking tickets
- β³ β Record previews
- β³ π Ticket notes: internal or shared
- β³ ποΈ Canned responses
- β³ βοΈ Limiting replies to particular senders
- β³ π¨ Telling the analyst a ticket is theirs
- β³ βοΈ Email signatures
- β³ π The public web address
- β³ π’ Ticket numbering
- β³ π Raising a ticket for someone else
- β³ π Merging tickets
- β³ π Confidential tickets
- β³ π₯ Portal managers
- β³ π Who has seen a ticket
- β³ π Reading long tickets
- β³ β Splitting tickets
- β³ β Selecting several tickets
- β³ ποΈ The folder pane
- β³ π½ Just my tickets, or no closed ones
- β³ π οΈ Snoozing tickets β Developer Guide
- β³ π₯ Collision detection
- β³ β±οΈ Time tracking
- β³ π Scheduled work in your own calendar
- Problem Management
- Tasks
-
Assets
- β³ π’ Moving an asset between companies
- β³ π Shared asset locations
- β³ π§βπΌ Assigning assets to analysts
- β³ π Warranty and lease alerts
- β³ π Saved table views
- β³ π¨οΈ Recording anything, and importing it
- β³ π·οΈ QR asset labels
- β³ π Who holds what, and handover documents
- β³ π₯οΈ The inventory agent (PowerShell)
- β³ ποΈ Proxmox VE servers
- β³ βοΈ VMware Cloud Director servers
- β³ π Linking equipment to tickets
- β³ βοΈ Follow-up tasks on a ticket
- Knowledge
- Change Management
- Calendar
- Morning Checks
- Reporting
- Software
-
Forms
- β³ π¨ The form designer β Developer Guide
- β³ π Layout & the grid β Developer Guide
- β³ ποΈ Collections β grouping submissions
- β³ π Submissions as PDFs
- β³ β‘ What happens next β a form's own actions
- β³ π οΈ Sections & conditional logic β Developer Guide
- β³ π οΈ Lookup fields β Developer Guide
- β³ π‘οΈ Catalogue request approvals
- People
- Domains
- Contracts
- Service Status
- π Notifications
- π¨ War Room
- Self-Service Portal
- LMS
- Process Mapper
- CMDB
- Network Mapper
- Workflows
- Issue trackers (Jira, Azure DevOps)
- System
-
Overview
- β³ π Progress tracker
- β³ Concepts & vocabulary
- β³ Email routing & mailboxes
- β³ Settings: global vs per-company
- β³ Users & self-service
- β³ Staff cross-company access
- β³ π’ One board across every company
- β³ Worked examples
- β³ Pitfalls & gotchas
- β³ Scope: what it's for
- β³ π οΈ Developer Guide (make a module multi-company)
- β³ ποΈ Case study: CMDB (a linked graph)
- β³ π§ͺ Test harness (prove it's isolated)
- What this is
-
π Bugs resolved
- β³ π’ Chat tickets ignored your ticket numbering
- β³ π Dates shown as a dash, or in server time
- β³ π Assets β Users showed people from other companies
- β³ π Restricted analysts could read other modules' data
- β³ πΌοΈ Replies with a picture in the thread failed to send
- β³ π Reply attachments never reached the customer
- β³ π οΈ Outbound email attachments β Developer Guide
- β³ π A global SSO provider was missing from the portal
- β³ π Behind a proxy, the SSO redirect said http
- β³ βοΈ The portal tagline moved when you saved it
- β³ π¨ The portal settings screen forgot what you saved
- β³ π‘οΈ The approvals inbox said "Error" and nothing else
- β³ π A table's answers were missing from the PDF
- β³ β A single-select column let you tick every option
- β³ π The portal ignored a form's field widths
- β³ π The tasks board stopped taking clicks
- β³ ποΈ #121 The index list is out of date after upgrading
- β³ π #133 The calendar subscription was empty
- β³ π #131 Tasks always reopened on the board
- β³ π₯ #129 Every page returned HTTP 500 after upgrading
- β³ π³ #127 A PHP warning above the System page
- β³ π #126 Notes stamped with the server's clock
- β³ π Storing every date in UTC
- β³ πͺ The portal was down for everyone signed in
- β³ βοΈ #120 Workflow notes could never be written
- β³ βοΈ #123 Three errors when running Database Verification
- β³ π #122 The description box was a stub in the corner
- β³ π£ Demo data deleted real accounts
- β³ π #117 Sign-in redirected to the wrong address
- β³ π¨ #108 The priority dot was invisible
- β³ β±οΈ #116 Time logged from the right-click menu
- β³ π #114 API keys refused by our own guard
- β³ ποΈ #110 Assigning a task told nobody
- β³ πͺ #107 Signed out while still working
- β³ π #103 "Share with Requester" reached nobody
- β³ π #102 Search found nothing for hyphens
- β³ πͺ #101 Source code editor opened behind
- β³ βοΈ #88 Subtasks could not be ticked off
- β³ π» #84 Asset deep link selected nothing
- β³ π« #79 A new ticket arrived with no status
- β³ π§ #79 A ticket from email did not say so
- β³ π #78 Bell opened to nothing
- β³ π¬ #77 Mail only collected from Inbox
- β³ π #74 The default password could not be changed
- β³ π¦ #70 Renaming an impact level
- β³ π€ #67 App-only mailboxes could not send
- β³ π #45 Verify only ever worked for Microsoft
- β³ π #45 IMAP reported as not authenticated
- β³ βοΈ An email template stopped escaping itself
- β³ π The portal dashboard showed the wrong time
- β³ π’ The folder said 99 and the list showed 96