Documentation

Access Control & Authentication

Documentation

Accessing EveryAnswer

Features and Functionalities

Security and Privacy

Troubleshooting and Support

Introduction

Access Control & Authentication are essential components of EveryAnswer’s security framework, ensuring that only authorized users can access the platform and interact with its Experts. This documentation will guide you through the processes and features related to managing user access and authentication in EveryAnswer.

User Authentication

User authentication in EveryAnswer is designed to protect the platform from unauthorized access by ensuring that each user is properly identified before accessing their accounts.

Login Procedures

Users authenticate their identity through a standard login process requiring an email address and password. This ensures secure and verified access.

Secure Credential Storage

User credentials are securely stored within the platform, providing a safe and protected environment for all login information.

Workspace-Level User Management

Users exist at the Workspace level, meaning they are managed and invited within specific Workspaces. Invitations grant them permission to use particular Experts.

Conversation History

If Conversation History is enabled (default setting), users can view and resume their past conversations with an Expert, facilitating a continuous and coherent interaction experience.

Access Control

Access control in EveryAnswer allows organizations to manage who can access specific data and features, safeguarding against unauthorized access and data leakage.

Granular Access Controls

     
  • Expert-Level Permissions: Administrators can control access to specific Experts on an individual basis, ensuring that only authorized users can access particular data.
  •  
  • Authorized Domains: Administrators can restrict where an Expert can be embedded, limiting access to specific, authorized domains and preventing unauthorized sharing of the Expert.

Public Sharing Options

     
  • Allow Public Share Page: Administrators can enable or disable the ability for users to share a public-facing page containing the Expert, controlling how and where the Expert can be accessed outside the main platform.
  •  
  • Allow Website Chat Bubble: The platform provides an option to enable or disable a chat bubble that can be embedded on websites, allowing users to access the Expert directly from the website.
  •  
  • Allow Website Embedding (iframe): Administrators can permit or restrict the embedding of Experts on websites using iframes, ensuring that the Expert is only accessible in environments controlled by the organization.

Managing User Roles and Permissions

Each user can be invited to multiple Experts within a Workspace, and their roles and permissions are managed at the Expert level. Users of an Expert can also be made an admin of that Expert, providing them with additional control and management capabilities.

For more detailed information on user roles and permissions, refer to the User Roles and Permissions documentation.

Password Management and Recovery

EveryAnswer includes comprehensive password management and recovery options to ensure that users can securely manage their access credentials.

Introduction

Access Control and Authentication are critical components of EveryExpert's security framework. These features ensure that only authorized users can access the platform and interact with Experts. This documentation guides you through the processes and features related to managing user access and authentication in EveryExpert.

User Authentication

Login Process

Users authenticate their identity through a standard login process:

  1. Enter email address
  2. Enter password
  3. (Optional) Complete two-factor authentication if enabled

Secure Credential Storage

EveryExpert securely stores user credentials within the platform. Passwords are hashed and salted to ensure maximum security.

Workspace-Level User Management

Users are managed at the Workspace level:

  • Administrators invite users to specific Workspaces
  • Invitations grant permissions to use particular Experts within the Workspace

Conversation History

When enabled (default setting), Conversation History allows:

  • Users to view past conversations with an Expert
  • Resumption of previous interactions
  • A continuous and coherent interaction experience

Access Control

Access control in EveryExpert allows organizations to manage who can access specific data and features.

Granular Access Controls

Expert-Level Permissions

Administrators can control access to specific Experts on an individual basis:

  1. Navigate to the Expert settings
  2. Select "Manage Access"
  3. Add or remove users as needed

Authorized Domains

To restrict where an Expert can be embedded:

  1. Go to Expert settings
  2. Select "Embedding Options"
  3. Add authorized domains in the provided field

Public Sharing Options

Allow Public Share Page

To enable/disable public sharing of an Expert:

  1. Go to Expert settings
  2. Find "Public Sharing"
  3. Toggle "Allow Public Share Page"

Allow Website Chat Bubble

To enable/disable the chat bubble for website embedding:

  1. Navigate to Expert settings
  2. Find "Website Integration"
  3. Toggle "Allow Chat Bubble"

Allow Website Embedding (iframe)

To permit/restrict iframe embedding:

  1. Go to Expert settings
  2. Find "Website Integration"
  3. Toggle "Allow iframe Embedding"

Managing User Roles and Permissions

  • Users can be invited to multiple Experts within a Workspace
  • Roles and permissions are managed at the Expert level
  • To make a user an admin of an Expert:
    1. Go to Expert settings
    2. Select "Manage Users"
    3. Find the user and click "Make Admin"

For more detailed information, see our User Roles and Permissions documentation.

Password Management and Recovery

EveryExpert provides comprehensive password management and recovery options:

  • Strong password requirements
  • Password reset functionality
  • Account recovery processes

For more information, please refer to our Password documentation.

Frequently Asked Questions

How can I add a floating chat bubble to my website?
To add a floating chat bubble to your website, navigate to **Settings** from the left navigation, click **Experts**, then click the pencil icon on the Expert you'd like to edit. Go to the **Share & Embed** tab, select the **Website Chat** sub tab, copy the code under **USE THIS CODE TO ADD A CHAT BUBBLE TO YOUR WEBSITE**, and paste it into the footer of your webpage.
Who manages user access to Experts?
User access to Experts is managed by both Workspace Admins and Expert Admins. Workspace Admins can assign or remove the Expert Admin role for any user. Expert Admins can promote Expert Users to Expert Admins within their specific Expert. Both types of admins can invite people to Workspaces, controlling who has access to and can interact with each Expert.
What are the login procedures for users on EveryAnswer?
Users authenticate their identity through a standard login process that requires an email address and password.
How are user credentials stored securely in EveryAnswer?
User credentials in EveryAnswer are stored securely within the platform. Passwords are hashed and salted to ensure maximum security, providing a safe and protected environment for all login information.
How does conversation history work in EveryAnswer?
If Conversation History is enabled (default setting), users can view and resume their past conversations with an Expert. This facilitates a continuous and coherent interaction experience.
What are granular access controls in EveryAnswer?
Granular access controls in EveryAnswer include Expert-Level Permissions where administrators can control access to specific Experts, and Authorized Domains where embedding of Experts can be restricted to specific, authorized domains.
What are the public sharing options available in EveryAnswer?
Public sharing options in EveryAnswer include allowing or disabling the ability for users to share a public-facing page containing the Expert, enabling or disabling a website chat bubble, and permitting or restricting the embedding of Experts on websites using iframes.
Can administrators limit access to EveryAnswer's Experts to certain users only?
Yes, administrators can limit access to EveryAnswer's Experts to certain users by inviting users to specific Experts, and managing users in Expert settings.
How can organizations ensure that Experts are only accessible on specific, authorized websites?
Organizations can ensure that Experts are only accessible on specific, authorized websites by restricting the embedding options to authorized domains within the Expert settings.
What measures are in place to prevent unauthorized sharing of Experts outside EveryAnswer’s platform?
Measures to prevent unauthorized sharing include controlling Public Sharing Options, such as toggling the ability to share a public-facing page and restricting website chat bubbles and iframe embedding to authorized environments.
Can users be part of multiple Workspaces and have access to multiple Experts in EveryAnswer?
Yes, users can be invited to multiple Workspaces and can have access to multiple Experts within those Workspaces, with their roles and permissions managed at the Expert level.
Last Updated:
August 30, 2024