Administration and Controls
How administrators keep Learn secure, configured, and reliable.
Access and Permissions
Start with least-privilege access. Give users only the permissions required for their actual responsibilities, then test using a non-admin account.
- courses
- courses_create
- courses_update
- courses_delete
- learn_categories
- learn_categories_create
- learn_categories_update
- learn_categories_delete
- learn_instructors
Settings, Menus, and Configuration
Configuration files found
- api_docs.php
- api_routes.php
- api_scopes.php
- default_menu.php
- euapi_docs.php
- euapi_routes.php
- menu.php
- module_config.php
- permissions.php
- profile_tabs.php
- public_pages.php
- routes.php
- settings.php
Menu entries found
- Journeys
- Course Catalog
- My Courses
- My Certificates
- My Points
- Manage Courses
- Instructor Applications
- Certifications
- Skillsets
- Certificate Templates
- Learn Public Catalog
Automation and Integrations
Scheduled jobs
1 job(s) found. Review cron, job setting gates, and last-run evidence.
Dashboard widgets
No dashboard widget registration was detected.
Public pages
Public, portal, guest, or verification routes/configs were detected. Test while logged out.
API surfaces
API config files found: api_docs.php, api_routes.php, api_scopes.php, euapi_docs.php, euapi_routes.php.
Seeders
Seeder files found: LearnDemoSeeder.php, LearnModuleDemoSeeder.php. Use them only for the data purpose documented by the module.
Tests
No module-specific test files were found.
Administrative Controls Checklist
- The module toggle is enabled only for tenants or environments where the workflow is approved.
- Role permissions are assigned by responsibility, not by convenience.
- Menu entries, default menu entries, and routes point users to the intended module-owned screens.
- Users know who is allowed to change settings, templates, status rules, and delete actions.
- Migrations are applied and table changes are verified in the target tenant context.
- API routes, filters, examples, scopes, and docs are reviewed after any data model change.
- Public pages are reviewed for privacy, accuracy, and brand consistency.
Change Management
- Announce workflow or permission changes before they affect live users.
- Update module README, CHANGELOG, and this guide when a workflow changes.
- For menu, route, permission, widget, API, or migration changes, validate the module from a non-admin account.
- Keep public pages, API examples, dashboard widgets, and scheduled jobs aligned with the real data model.