Quick actions
Common IT workflows.
SCHOOL IT OPERATIONS
Sign in to manage devices, students, locations, distribution, and day-to-day school IT operations from one secure workspace.
Spaces, capitalization, and punctuation are normalized automatically. You no longer need to type the dashes exactly.OPERATIONS OVERVIEW
Fast visibility into campus devices and daily activity.
Common IT workflows.
Permanent transaction trail.
STUDENT SELF-SERVICE
Your school IT profile and devices. This portal can only access the student record linked to your signed-in account.
NATIVE STICKER-FREE SCANNING
The native Android companion signs directly into CampusOps HQ. No Safari/Chrome scanner page, temporary tunnel pairing, QR pairing code, or Bluetooth pairing is required.
Included with this standalone build under android/CampusOps HQScan.
Native app functions are permission-scoped to the staff account signed into the phone.
During development, the phone connects straight to your local CampusOps HQ server through ADB. This avoids temporary trycloudflare.com links entirely.
npm run dev on the Windows PC.adb devices, then adb reverse tcp:8787 tcp:8787.http://127.0.0.1:8787 and sign in with a CampusOps HQ staff account.The HTTP exception exists only in the Android debug build for the USB development connection. Release builds require HTTPS.
HALLWAY RECOVERY
No sticker required. Use Alt + V on the Chromebook, then read its serial from the screen.
USB scanner: click the field once, then scan. Most scanners send Enter automatically.
No capture yet.
Camera access requires HTTPS on phones. This alpha uses on-device browser OCR; we’ll tune speed and accuracy from your real Chromebook screens.
Useful for physical labels when present. Digital serial identification remains the fallback when labels are removed.
Scan a serial number, read it from the Chromebook screen, or scan a QR/barcode.
FAST DESK MODE
Designed for a physical USB scanner: student first, device second.
Permanent assignment or daily loaner.
Scan the Chromebook and make it available again.
START-OF-YEAR WORKFLOW
One focused workflow: select a student, complete required paperwork, verify the Chromebook, and assign it.
STEP 1
Search the CampusOps HQ roster by name, student ID, or school email.
| Student | Paperwork | Device |
|---|
CampusOps HQ will automatically use that student's campus for the assignment.
STEP 3
Type or scan the serial/asset tag. CampusOps HQ checks the selected student, paperwork, campus, pool, and device status together.
No Chromebook checked yet.
CAMPUS INVENTORY
Use this before distribution to move available devices from Shared Inventory or another authorized campus.
Campus intake, paperwork changes, and permanent assignments are audited.
ASSET DATABASE
Search and manage the fleet. Device creation stays out of the way until you need it.
| Asset | Serial | Model | Pool | Status | Assigned To | Campus | Location |
|---|
DATA ONBOARDING
Bring an entire school or district into CampusOps HQ without copying rows by hand. Choose a file once; CampusOps HQ handles batching, validation, de-duplication, and progress.
Files are processed in safe server batches automatically. Keep this page open while the progress screen runs.
LIVE GOOGLE DIRECTORY · READ ONLY
Connect a customer Google Workspace tenant using domain-wide delegation. CampusOps HQ only reads student users and managed ChromeOS devices; it does not change Google accounts, organizational units, device state, or policies.
—Only Google users inside the mapped student OU paths are synchronized. The root OU cannot be used. More-specific paths take priority.
| Started | Resource | Status | Seen | Created | Updated | Skipped | Errors |
|---|---|---|---|---|---|---|---|
| No live sync history yet. | |||||||
GOOGLE / CHROME ENTERPRISE
Choose the CSV exported from Google Admin. CampusOps HQ recognizes deviceId and serialNumber, preserves Google management metadata, and places new devices in Organization Shared Inventory.
STUDENT ROSTER
Use this as a universal fallback when live Google synchronization is not configured, or for schools using Microsoft/SIS exports. Upload the roster, map its columns, choose a default campus, then import the entire file.
STUDENT ROSTER
Search the roster first. Add/edit tools open only when needed.
| Student | ID | Grade | Campus | Identity | Assigned Device | Profile |
|---|
STUDENT IT PROFILE
Complete device custody, agreements, receipts, and activity.
INTEGRATIONS
Use read-only live Google Directory synchronization for mapped student users and managed ChromeOS devices, with CSV imports retained as a fallback.
Live Directory connection status for this organization.
Schools can use live synchronization or CSV fallback without changing CampusOps HQ's official custody and assignment records.
CHROME ENTERPRISE IMPORT
Device file onboarding has moved into the dedicated Import Center, with file browsing, 5,000-device imports, validation, de-duplication, and live progress.
Linked Workspace identity plus any stored Classroom relationship records. Local development remains fictional-only.
| Student | School Email | Google Status | Classrooms |
|---|
ACCESS CONTROL
Override individual staff capabilities without changing their base CampusOps HQ role. Campus and tenant boundaries still apply.
Student portal accounts intentionally cannot receive staff overrides.
Inherit uses the selected role's normal rule. Allow adds a feature. Deny removes it.
These overrides never expand campus or organization scope. A Watts-only user remains Watts-only.
Base role access and the selected user's explicit override.
APPROVAL AUTHORITY
Choose which staff may review or make final decisions for protected CampusOps HQ workflows. Approval authority never bypasses campus or organization scope.
Administrators are built-in final approvers. Student portal accounts cannot receive approval authority.
A Watts-only approver remains Watts-only. Granting approval authority does not reveal another campus or organization.
These categories will power the future Approval Center and Account Services workflows.
STAFF & ACCOUNT SECURITY
View staff first; account creation and controls open only when needed.
Organization accounts, roles, campus scope, last login, and current session count.
| User | Role | Campus Scope | Status | Last Login | Sessions | Login Guard | Action |
|---|
Disable and re-enable actions are recorded with the administrator identity and optional reason.
| Time | User | Change | Performed By | Reason |
|---|
SESSION SECURITY
Control session expiration and automatic temporary lockouts after repeated failed sign-in attempts. All limits are enforced by the server.
A session ends when no protected CampusOps HQ action occurs for this many minutes. Allowed: 5–240.
This is a hard limit from sign-in time, even while the user stays active. Allowed: 1–24.
Allowed: 3–20 attempts.
Only failures inside this rolling observation window count together. Allowed: 5–60.
After the threshold is reached, that organization + email sign-in identifier is blocked for this period. Allowed: 5–240.
SECURITY AUDIT
Review authentication activity for this organization. CampusOps HQ records security metadata only—never passwords.
Newest first. Network address and browser/device user-agent are captured when the request provides them.
| Time | Event | User / Email | Outcome | Network | Reason | Browser / Device |
|---|
ORGANIZATION STRUCTURE
Create and manage every physical location inside this organization. Shared Inventory remains organization-wide and is never treated as a campus.
New imported Chromebooks can stay here until a campus claims them. This is not a physical campus and cannot be deactivated.
DISTRIBUTION ADMINISTRATION
Configure the annual distribution cycle and the paperwork CampusOps HQ uses to determine permanent-assignment eligibility.
Only one school year can be Active at a time.
Planning years can be edited until agreement/distribution history exists.
Agreement codes are permanent identifiers after creation.
Deactivating a type hides it from future distribution intake without deleting historical student agreement records.
Planning, active, and historical distribution cycles.
| School Year | Dates | Status | Usage | History Lock |
|---|
Organization-wide paperwork definitions used by the Distribution Center.
| Agreement | Code | Required | Status | Recorded History |
|---|
COMMERCIAL PRODUCT FOUNDATION
CampusOps HQ is now designed as a paid multi-school SaaS product. The development school uses the same paid plan through a complimentary owner-issued license.
Pricing is deliberately not hard-coded yet.
Every student, asset, transaction, report, Google link, and future account action belongs to an organization.
ACCOUNTABILITY & YEAR-END
Current Chromebook inventory plus activity for a selected school-year period.
Select a period to generate the report.
Where every registered Chromebook stands right now.
Transactions recorded during the selected date range.
Device-level accountability at the time this report was generated.
| Asset | Serial | Status | Pool | Student | Student ID |
|---|
Reporting note: “Currently Assigned” is a live inventory count. “Issued this period” and “Returned this period” are transaction counts. Unique-device counts are shown separately so reissues do not inflate the number of physical Chromebooks.
AUDIT TRAIL
Assignments, loaners, returns, and found-device events remain recorded.
| Time | Action | Asset | Student | Reason | Performed By |
|---|