Platform admin (aka super admin)
1 min
To be able to allow only devs and consultants access to certain features/UIs a special permission and group has been created. The permission is "PLATFORM_ADMIN" and the group "hyperPlatformAdmins".
So that the regular admins can't assign themselves to this group the group doesn't actually exist in the CMS. It is injected in the authentication system. If a contact contains a property "platformAdmin" set to true then it gets the permission and group injected.
The property "platformAdmin" itself is only accessible by "hyperPlatformAdmins" and so it is bootstrapped set to true to the users "[email protected]" and "[email protected]". Only these users can then promote other users to platform admins.