Interactive, responsive prototypes bringing the operator console onto the shipped v3.5-a neutral-first system — the same tokens.css and shell vocabulary as the app v3.5 prototypes. The console follows BRIEF.interface-v35.md: structure first, brand as a layer, mobile-first.
The v3.5-a console: expandable icon rail with the full 7-section operator map, sticky operator topbar (status pill, maintenance flag, preview-as-role, refresh, theme), dense data tables, and the confirm-modal / toast patterns. Mobile is the universal menu — the icon rail becomes an off-canvas drawer via the topbar menu (no bottom tabs) — plus horizontal-scroll tables. Light/dark, keyboard-operable, reduced-motion safe.
Tier-1 operator surface for the investor lens: register (opaque pack IDs, lens badges, NDA version + ToS acceptance), compliance (access-without-a-current-signature flagged as a live state), grant/revoke audit, and a Lens & gate tab that shows why this cannot be a switch in the signing gate — the gate renders what /api/legal/pending returns, so skipping EAPA client-side leaves gate_needed() true at seven server call sites and traps the user with nothing to sign. Revoke names the Cloudflare Access step it does not reach. Spec: relay-platform docs/SPEC.investor-track.md — draft, awaiting approval, nothing built.
Tier chips (active critical/warning counts) on every screen + a bell with the per-admin unseen count and notification panel, fed by platform_alerts — categories include the new client and public from the error-triage pipeline. Interactive: fire client/boot/public spikes and watch the shell escalate; mark-seen (per-admin cursor) vs resolve (global lifecycle) modeled as the backend does it. Backend contract table included.
The org-admin surface for the organizing layer: libraries with their lens and deny-only overrides (required mount, fork policy, default, boot pins), shelves with their rules and validity state (a broken rule reads needs attention, never silently empty), capability delegation via groups, and the audit feed carrying every rule edit's predicate before → after. Structure only — this screen can never read, count, or reach into anyone's content. Spec: SPEC.collections.md.
Same shell in the neutral dark ramp (canvas darkest, cards lighter; teal #2dd4bf, ink-flip fills). Toggle also lives in the topbar (auto → light → dark).
Parallel v3.5 build focused on the Finance nav group, own sidebar/shell (pending fold-in to console.html). Commitment lifecycle (5 states, committed-vs-realized $), seat↔member true-up with the 402 confirm modal, trials with discount-at-conversion, and Seats & Segments — free / EAP-open / EAP-grace / paid-full / paid-discounted split by cost vs. revenue, margin tile flips to net burn when only unpaid segments are in view, sortable table + working CSV export. P4/P5 (churn, forecast, cash flow) render as planned stubs.
Board-level surface, tier-1/finance gated: the four milestone-gated tranches (T1 Protect → T2 Sustain → T3 Team, the round floor → T4 Scale) instrumented as signals rather than a wall of zeros. Every figure carries a provenance chip (source + as-of) and five distinct source states — live, manual, stale, not instrumented, not computable — so “we measured zero” can never be confused with “nobody wired this up”. Roadmap is one source with two renders: board view keeps dates, the investor render drops them at render time and reports its own withheld-row count. A fourth screen adds the one column the Investor track screen doesn't carry — onboarding enrollment — because activation rate is a T4 gate signal and an investor enrolled in First Relay sits in its denominator. Register, compliance and audit stay owned there; this is a lens, not a second register.
tokens.css verbatim — role-split dual-value teal, neutral surfaces, Cormorant Garamond / Outfit / JetBrains Mono. Shell reuses the app's .rail / bottom-tabs / drawer vocabulary; the console layers operator chrome on top.SPEC-account-migration-v1, relay-platform /api/admin/v1/account-migrations) — kind + consent-progress + status-chip table, execute/cancel confirms, journal viewer, tier-1 framing. Reached from the rail or the Users row action ("Merge…").relay-console/CONSOLE_SCREENS.md). This prototype builds the shell plus five canonical pattern-setters; the full inventory and the v3.5-a gaps are in briefs/AUDIT.console-v35.md, tracked as Linear issues under RCTX-705.concepts/console-v34.html and friends) — teal-tinted surfaces, retired.check_tier1, it argues for a third axis on legal documents (who a version applies to) alongside version and enforcement mode, and for the onboarding curriculum — single-track today — to take the same lens. Rationale: relay-platform docs/DESIGN-NOTE.legal-gate-audience.md.AUDIT.console-v35.md Batch 4 inventory (Releases, Onboarding mgmt, Legal, Trial users, Trash, Network) as placeholders alongside the built pattern-setters — the shell's nav surface is complete even where the screens behind it aren't.