Security and Access
Who may sign in, how accounts and sessions work, and the host-level privilege an Installer account carries.
- Who should have access — The DataMind Installer is an infrastructure control plane — its accounts belong only to a small set of ultra-privileged system administrators of the host.
- Identity and users — Where Installer accounts live, how they are created and removed, the password and session rules, and how they relate to DataMind OS application users.
- Host privilege and the Docker socket — The Installer manages containers through the Docker socket, so the Installer and anyone who can drive it effectively hold root on the host.
- Network exposure — Which ports the DataMind Installer and the deployment expose, what should reach them, and how to verify what is actually listening.