Command
Executive / Governor
One canonical leadership question. What changed reality, what decision matters now, what proof is attached, and what did the system learn?
Governed mode does not permit silent fixture truth on leadership surfaces.
Command Center in 60 seconds
Start here
Step 1: Sign in to your tenant

Sign in first. ECC resolves your tenant, security profile, assigned role, permissions, source entitlements, and default command view from governed access setup, so a normal user does not need tenantId query strings, environment variables, or manual role selection.

SSO identity
Okta, Entra ID, Google Workspace, or SAML/OIDC claims identify the user and tenant.
Role resolved
ECC opens the assigned role view from the security profile. Multi-role users receive their primary default role, with authorized switching only when configured.
Evidence routed
Source entitlements and process ownership decide which proof, decisions, actions, and command views the user may see.
Command cannot show live truth until a signed-in tenant and security profile are resolved. Demo role lenses are review-only and cannot show live claims.
What this is
Your governed leadership control tower.

ECC answers one leadership question: What changed reality, what decision matters now, what proof is attached, and what did the system learn?

Reality
See what changed.
Decision
Know what matters now.
Proof
Check the evidence chain.
Owner
See who moves next.
Improve
Learn from the last move.
Why you are here
Start from sign-in, resolved tenant, assigned role, source entitlements, and current reality, not ECC architecture. Demo reviewers can use the role previews above; real users land on their role-specific command view automatically.
Why this is blocked
ECC is ready, but it does not yet know which governed tenant or leadership context to load. No tenant scope means no trusted command view.
What success looks like
Once tenant scope is present, Command shows reality, next decision, proof, ownership, freshness, exceptions, and the learning loop from one governed place.
Demo role drill-downs
These demo links stay inside /command and carry tenant, role, and reality scope so admins and reviewers can inspect behavior without granting live-role access.
Tenant for links: demo-ecc
Executive
A decision is needed now

What changed, what decision matters, and what proof should I trust?

Decision, value, risk, owner, and proof freshness.

Operator
The governed work is ready to move

What can I safely move now, and what proof must stay attached?

Next move, workflow drawer, proof required, and escalation status.

Governor
The proof needs attention

Is this claim safe, fresh, owned, and still governed?

Freshness, tenant scope, proof owner, and blocked or stale claims.

Delivery owner
The next move is blocked

Which delivery item is blocked, who owns it, and what evidence clears it?

Blocked work, project drawer, owner, proof requirement, and next governed move.

Finance owner
Value or risk needs executive attention

Where did value move, where did risk move, and what proof supports the claim?

Value movement, risk movement, proof quality, and accountable owner.

Command is waiting for a tenant scope
ECC is ready, but it does not yet know which governed organization, tenant, or leadership context to load. To protect the leadership surface, ECC will not display live decisions, proof, risks, or claims until a tenant is explicitly selected.
What this means
No tenant scope means no trusted command view.
How to fix it
Set PMO_LEADERSHIP_TENANT_ID or pass a valid tenantId in the request.
What loads next
Reality, decision, proof, owner, freshness, exceptions, and learning loop.