Store these somewhere private. They are displayed only once.
Notifications
Loading
Loading account notifications...
Service Command Center
Every purchased service mapped to the right customer, provider, plan, entitlement, and next action.
Mapped Services0Loading API dataHosting SourceHestiaCPWeb, DNS, emailVPS SourceVirtualizorServers and usageAccess RuleOwner AdminChecking server policy
Service Ledger
Entitlement source of truth
Service
Customer
Provider
Plan
Status
Next
Customer Visibility Rule
Customer sees owned servicesAdmin sees all servicesSupport sees assigned accountsPending checkBilling drives entitlement
Provisioning Studio
Orders become services through provider-specific adapters, confirmation gates, rollback notes, and audit events.
Provisioning Queue
Safe orchestration staging
Order
Customer
Service
Provider
Stage
Status
Review
Safety Gates
Read-only checks firstIdempotency key per actionDestructive actions need approvalAudit event after every adapter call
Product Templates & Capacity
Loading configuration
Owner Decisions
Loading activation gates
Mapping Suggestions
Loading mapping suggestions
VPS Services
Virtualizor records load from live provider sync after sign in.
VPS Information
IPv4
Available after service mapping
OS
Provider managed
Node
Provider managed
Uptime
Provider managed
Panel
Virtualizor
Resource Mix
Console
Provider write disabled
Console access will open through the approved Virtualizor flow after service mapping and action gates are enabled.
Website Hosting
HestiaCP website records load from live provider sync after sign in.
Resource Mix
Website Tools
Recent Activity
Website activity appears after live provider events are connected.
Domains
Registration, DNS health, SSL status, renewals, and ownership signals in one list.
Tickets, account context, service health, and guided fixes before everything becomes a group chat autopsy.
WHMCS routingLoading departments
Checking sync
Select a ticket
Choose a request from the queue to review its conversation and available actions.
Access & Approvals
Manage panel users, role boundaries, account holds, and privileged decisions.
Policy role
Panel Users
Sign in required
Sign in as an admin to load users.
User
Role
Status
MFA
Password
Source
Permission Matrix
Production gate model
Role
Customer Data
Web Hosting
VPS Power
Billing
Admin Tools
Current Preview Role
Owner Admin
Can see the full fleet, manage customers, review billing, provider readiness, and privileged lifecycle actions.
Billing Supervisor
Can manage billing lifecycle actions, including immediate termination, account deletion, and abuse/security hold removal, without provider credential access.
Customer
Only sees purchased services, invoices, support tickets, and safe self-service actions.
Support Agent
Can run broad customer assist actions and place abuse/security holds; termination, account deletion, hold removal, provider credentials, and entitlement sync stay escalated.
Approval Queue
Sign in required
Request
Requester
Status
Service
Requested
Entitlement Source
Billing plan maps servicesHestia user maps websitesVirtualizor user maps VPS accessTeam roles use panel user storage
Audit Events
Loading recent events
Time
Actor
Action
Guardrail
Platform Health
Current provider sync, storage, and backend availability.
API ScaffoldLive/api/health.phpConfig StorePrivateOutside public_htmlWrite ActionsOffEvidence packets storedPanel Buildv75Public readiness phase
HestiaCPWeb hosting adapter
Web domains, DNS zones, mailboxes, databases, SSL, cron, backups, and user quotas.
Needs API credential vaultVirtualizorVPS adapter
VPS list, power actions, console links, snapshots, rebuilds, plans, IPs, and usage.
Needs API credentialsBillingEntitlement adapter
Plans, invoices, renewal state, customer ownership, credits, and service gates.
Model definedSupportContext adapter
Tickets, account timeline, health checks, guided fixes, and escalation requests.
Workflow mapped
Live Backend Readiness
Current checks
Loading backend health...
Action Capability Matrix
Loading actions
Action
Area
Provider
State
Roles
Release
Drift & Reconciliation
Loading findings
Finding
Severity
Provider
Resource
Detected
Worker & Queue Health
Loading
Loading queue health...
Launch Readiness
Sign in required
Area
Status
Impact
Next Step
Integration Canary Activation
Owner MFA required
Loading guarded support and billing actions...
Production Phase Acceptance
Loading 26 phases
Production gateEvaluating
Loading exact launch blockers...
Phase
Status
Evidence
Next Gate
Public Launch Buildout
Loading phases
Phase
Status
Impact
Next Step
Storage & Sync Persistence
Loading storage
Layer
Status
Purpose
Next Step
Live Provider Sync
Loading sync status
Provider
Status
Records
Public Results
Next Gate
Live Provider Inventory
Sign in required
Suggestions load after sign in
Provider
Resource
Owner Hint
Customer
Visibility
Last Sync
Action
Page 1
WHMCS Mapping Workbench
Loading WHMCS mappings
WHMCS identity or service
Suggested panel or provider record
Confidence reason
Mapping state
Last confirmation
Command
Loading WHMCS mappings
Auth Gates
Loading auth gates
Role
Session
Provider Reads
Writes
Blocked By
Next Gate
Provider Write Contracts
Loading contracts
Action
Provider
Adapter Operation
Reads
Rollback
Enablement Blockers
Status
Adapter Dry-Run Replay
Loading dry runs
Action
Provider
Replay Sequence
Write Handling
Audit
Rollback
Blockers
Status
Recovery Evidence
Loading evidence gates
Gate
Provider
Protects
Evidence Needed
Proof Method
Approval
Next Step
Status
Restore Drill Approval Packets
Loading packets
Packet
Provider
Target
Scope
Preconditions
Evidence Fields
Stop Conditions
Approval
Status
Backup Inventory Collection
Loading collectors
Collector
Provider
Scope
Evidence Fields
Run Mode
Browser Run
Next Step
Status
Backup Collector Runner
Loading runner gates
Gate
Requirement
Run Handling
Evidence Output
Status
Backup Evidence Store
Loading evidence packets
Packet
Run
Collector
Provider
Target
Status
Safety
Created
Guarded Action Catalog
Loading actions
Action
Provider
Area
Policy
Roles
Notifications
Customer Notice
Public Reasons
Risk
Status
Audit & Approval Policy
Loading audit policy
Event
Risk
Approval
Notifications
Customer Notice
Public Reasons
Status
Notes
Service Ownership Map
Loading ownership
Customer
Service
Provider
Provider Resource
Owner Gate
Next Step
Provider Identity Registry
Loading registry
Service
Provider
Account Ref
Resource Ref
Registry
Next Step
Provider Adapter Diagnostics
Loading adapter contracts
Adapter
Stage
First Read
Read Calls
Blocked By
Next Step
Provider Sync Plan
Loading read model
Provider
Stage
Reads
Maps To
Preview Rows
Next Step
Provider Read Jobs
Loading read jobs
Provider
Job
Status
Method
Maps To
Blocked By
Live Read Bridge
Loading bridge gates
Provider
Job
Bridge
Request
Public Run
Next Gate
Support & Billing Stack
Loading recommendations
Area
Recommendation
Fit
Integration
Status
WHMCS Support Activation
Loading support plan
Phase
Decision
Why
Next Step
Status
Live Chat Options
Loading options
Option
Hosting
Cost Posture
Fit
Status
Action Pipeline
1Resolve service ownerBilling and account map
2Check permissionRole and entitlement gate
3Confirm riskSafe, sensitive, or destructive
4Call adapterProvider-specific API client
5Write audit eventOutcome, actor, target
First Safe Actions To Wire
Low-risk API reads first
Action
Provider
Risk
Why first
List customer websites
HestiaCP
Read only
Confirms account mapping
List customer VPS instances
Virtualizor
Read only
Confirms entitlement model
Show usage and health
Both panels
Read only
Useful before write actions
Open support timeline
Support
Read only
Gives agents context
Owner security
Hestia Credential Vault
Loading redacted vault status.
Owner MFA enrollment is required before rotation.
The private worker schedule is checked after credential validation.
Every active staff account must have a confirmed factor.
Only one synchronized Hestia mail target will be allowed.
Panel access
Backstage sign in
Sign in to load your role-scoped Backstage dashboard. Provider writes remain disabled until final launch gates are complete.