CENTRAL ACCESS CONTROL

权限管理Access Management

管理员与审核权限统一在这里维护。换届时不需要修改网站代码。

Manage administrators and reviewer permissions in one place. Leadership handover no longer requires a code change.

受限页面Restricted page

权限管理员登录Access manager sign in

请使用 BC Google 账户登录。只有被授予“权限管理员”的人员可以查看或修改名单。Sign in with your BC Google account. Only people with the Access Manager role may view or change this list.

如果浏览器中仍是旧邮箱密码会话,只需用 BC Google 重新登录一次;此后登录状态会在全站共享。If this browser still has a legacy email-and-password session, sign in with BC Google once; that session will then be shared across the site.

返回活动后台Back to event management
正在检查已登录账户…Checking your current sign-in…
当前权限管理员Current access manager

首次启用One-time setup

建立统一权限中心Initialize centralized access

系统会把 Junru Lin 与 Chenhao Zhang 建为首批完整管理员。初始化后,所有权限只以本页名单为准,原有写死邮箱不会继续生效。Junru Lin and Chenhao Zhang will become the initial full administrators. After setup, this list becomes the only source of access.

人员与权限People and permissions

添加或修改管理员Add or update an administrator

输入新一届成员的 BC 邮箱即可,不需要查 Firebase UID。活动或招新“管理员”自动包含相应的“审核”权限。Enter a successor's BC email; no Firebase UID is needed. Administrator roles automatically include the corresponding reviewer access.

授予权限Grant permissions

唯一权限名单Single access list

当前管理员与审核人Current administrators and reviewers

尚未建立权限名单。No access records yet.

数据与隐私Data & privacy

账户删除申请Account deletion requests

这里只记录人工处理进度,不会从浏览器自动删除 Firebase Auth。活动报名通常可在活动结束后保留最多 90 天,招新资料可保留一个招新周期;法律、安全或争议所需记录可能更久。“已完成”仅表示管理员已完成规定流程;完成满 180 天后可清理这条最小化审计记录。

This panel records a manual workflow only; it cannot delete Firebase Auth from the browser. Event registrations may normally be retained for up to 90 days after an event, recruitment applications for one recruitment cycle, and legal, security, or dispute records longer. “Completed” means the required administrator workflow was completed; its minimal audit record may be purged after 180 days.

暂无账户删除申请。No account deletion requests.

安全换届Safe handover

换届顺序Handover order

  1. 现任管理员先添加继任者,并授予“权限管理员”或需要的具体权限。A current manager first adds the successor and grants Access Manager or the required specific roles.
  2. 继任者登录本页,确认可以查看并修改权限。The successor signs in here and confirms access.
  3. 由另一位权限管理员停用离任者。系统禁止任何人撤销自己的权限管理员身份,避免全站锁死。Another access manager disables the outgoing person. Self-removal of Access Manager is blocked to prevent lockout.

“照片管理员”是独立权限,不会自动授予活动或权限管理员。Google Drive 相册的编辑权限仍需同时在 Drive 文件夹中调整。Photo Manager is a separate permission and is not implied by event or access administration. Google Drive folder editing must still be handed over in Drive.