Administration and Controls
How administrators keep Recruitment secure, configured, and reliable.
Access and Permissions
Start with least-privilege access. Give users only the permissions required for their actual responsibilities, then test using a non-admin account.
- recruitment
- manage_recruitments
- manage_applicants
- job_offer
- job_position
- recruitment_create
- recruitment_update
- recruitment_delete
- recruitment_category
- recruitment_category_create
- recruitment_category_update
- recruitment_category_delete
- job_offer_create
- job_offer_update
- job_offer_delete
- job_position_create
- job_position_update
- job_position_delete
Settings, Menus, and Configuration
Configuration files found
- api_routes.php
- api_scope.php
- control_tokens.php
- default_menu.php
- menu.php
- module_config.php
- permissions.php
- routes.php
- settings.php
- system_logs.php
Menu entries found
- Recruitment
- Job Postings
- Job Positions
- Job Portal
Automation and Integrations
Scheduled jobs
1 job(s) found. Review cron, job setting gates, and last-run evidence.
Dashboard widgets
No dashboard widget registration was detected.
Public pages
Public, portal, guest, or verification routes/configs were detected. Test while logged out.
API surfaces
API config files found: api_routes.php, api_scope.php.
Seeders
Seeder files found: RecruitmentOpenJobsSeeder.php. Use them only for the data purpose documented by the module.
Tests
Module tests found: RecruitmentTest.php.
Administrative Controls Checklist
- The module toggle is enabled only for tenants or environments where the workflow is approved.
- Role permissions are assigned by responsibility, not by convenience.
- Menu entries, default menu entries, and routes point users to the intended module-owned screens.
- Users know who is allowed to change settings, templates, status rules, and delete actions.
- Migrations are applied and table changes are verified in the target tenant context.
- API routes, filters, examples, scopes, and docs are reviewed after any data model change.
- Public pages are reviewed for privacy, accuracy, and brand consistency.
Change Management
- Announce workflow or permission changes before they affect live users.
- Update module README, CHANGELOG, and this guide when a workflow changes.
- For menu, route, permission, widget, API, or migration changes, validate the module from a non-admin account.
- Keep public pages, API examples, dashboard widgets, and scheduled jobs aligned with the real data model.