GTM Biblical Greek · Help & ManualGTM Biblical Greek · የእገዛ እና መመሪያ
Manual Homeየመመሪያዎች መነሻ
Source-audited platform manualበምንጭ የተመረመረ የplatform መመሪያ

Staff, Instructor & Administrationሠራተኞች፣ አስተማሪዎች እና አስተዳደር

Course-scoped teaching access, roster/gradebook/submission workflows, protected administrator writes, user deletion, certificate administration and vocabulary-audio authority.

በኮርስ ደረጃ የተገደበ የማስተማር መዳረሻ፣ የተማሪ ዝርዝር (Roster)፣ የውጤት መዝገብ (Gradebook)፣ የቀረቡ ስራዎች፣ የተጠበቁ የአስተዳደር ለውጦች፣ የuser account ስረዛ፣ certificates እና የVocabulary ድምፅ ስልጣንን የሚያብራራ ሙሉ መመሪያ።

3staff workspacesየstaff የስራ ቦታዎች
4audio QA gatesየaudio QA መቆጣጠሪያዎች
2course staff rolesየcourse staff ሚናዎች
1fresh admin write gatefresh admin write gate

Roles and access boundariesRoles እና የመዳረሻ ወሰኖች

Role/contextAudited access
Instructor / assistantOnly courses explicitly assigned through course_staff; can view roster, student records, submission queue and gradebook for those courses.
AdministratorGlobal course/staff/identity/certificate/audio administration plus instructor workspace access.
Scholarly editorPrivileged identity/MFA treatment exists, but the audited Admin navigation itself is administrator-only.
Global instructor capability does not automatically expose every roster. Course-level staff assignment is an explicit authorization boundary.
Instructor እና Assistant የተለያዩ የፈቃድ ደረጃዎች አሏቸው። Administrator የplatform አስተዳደር ፈቃድ አለው፣ Instructor ግን በተመደበለት ኮርስ ውስጥ ብቻ ይሰራል። Course staff assignment የትኛው ሰራተኛ በየትኛው ኮርስ ላይ ምን ማድረግ እንደሚችል ይወስናል።

Instructor workspace: course → roster → submissions → gradebookየአስተማሪ የሥራ ቦታ ሂደት (Instructor workspace)

The Instructor landing page lists assigned course versions, their status and enrollment counts, with three primary actions:

Roster

Student display name, email, enrollment status/date, completion and a link to the student record.

Submissions

Queue of instructor-assessed assignment submissions whose status is Submitted or Returned.

Gradebook

Course assessment/assignment result matrix across enrolled students.

የInstructor መነሻ ገጽ የተመደቡ ኮርሶችን ያሳያል። ዋና እርምጃዎቹ፦ Roster፣ Submissions እና Gradebook ናቸው።

Instructor student recordየInstructor የተማሪ መዝገብ

The student record consolidates the selected enrollment, academic results, locked completion if one exists, and instructor-assessed assignment submissions. It is a course-scoped staff view, not a public student profile.

If the current staff user is also an administrator and no immutable completion exists, the page exposes an administrator-only enrollment-status control with an audit note.

የተማሪዎችን የኮርስ ሁኔታ፣ የግምገማ ውጤቶች፣ የcertificate ሁኔታ እና የsubmission መዝገቦች መመልከት ይቻላል። Administrator ተጨማሪ የአስተዳደር ስራዎችን ሊያከናውን ይችላል። Enrollment status በተማሪው የኮርስ መዝገብ መሠረት ይታያል።

Instructor-assessed submissions and gradingየInstructor የምዘና ሂደት

  1. Open the course Submission queue.
  2. Open a submission to read the student response and any stored file metadata.
  3. If status is Submitted, enter points awarded (0 through points possible) plus optional feedback and click Record grade.
  4. Or provide required revision feedback and click Return for revision.
  5. The service records submission events so the submission history is auditable.

Returned work remains in the staff queue. Grading converts points to a percentage according to the instructor policy layer.

የተላኩ ስራዎች በSubmission queue ውስጥ ይታያሉ። Submitted የሆነ ስራ ለመገምገም ይከፈታል፣ Record grade በመጠቀም ውጤት ይመዘገባል። ማሻሻያ ካስፈለገ revision feedback በመጨመር Return for revision ማድረግ ይቻላል።

Administration dashboard and security gateየአስተዳደር መነሻ ገጽ እና የደህንነት መግቢያ

Administrator reads require privileged MFA state. Sensitive writes additionally pass the administrator_write_required gate: fresh password + TOTP reauthentication and the deployment write flag GTM_ADMIN_WRITES_ENABLED=1.

The Administration landing page exposes Users, Audit log, Certificates, Vocabulary audio and per-course Staff management.

Admin የprivileged MFA መጠቀም አለበት። ከፍተኛ ፈቃድ የሚጠይቁ ስራዎች ከpassword እና TOTP ማረጋገጫ በኋላ ብቻ ይፈቀዳሉ። GTM_ADMIN_WRITES_ENABLED=1 የሚለው የserver ቅንብር የadmin write operations መፍቀዱን ይቆጣጠራል።

User directory and protected deletionUsers እና የተጠበቀ የaccount ስረዛ

The Users page searches by name/email and shows Name, Email, Status, Roles, Verified, Created and Action. Permanent deletion is deliberately restricted to eligible non-privileged student/test accounts and is never offered for the currently signed-in administrator.

Deletion is destructive.Deletion አፍራሽ ተግባር ነው። The audited UI warns that ordinary enrollment, progress and practice data will be erased. Accounts with protected/formal academic records or privileged staff identity remain protected. Fresh password + TOTP reauthentication is required before deletion.
Users ገጽ የaccount ዝርዝር፣ email፣ status፣ roles እና verification ሁኔታን ያሳያል። Delete የሚፈቀደው ለnon-privileged student/test account ብቻ ነው። ከፍተኛ ፈቃድ ያለው account ለመሰረዝ password እና TOTP ያሉ ተጨማሪ የደህንነት ማረጋገጫዎች ያስፈልጋሉ።

Why some user accounts show Delete and others do not ለምን አንዳንድ user accounts የDelete አማራጭ አላቸው እና ሌሎች የላቸውም?

The absence of a Delete action is not automatically a UI defect. The administration interface exposes destructive deletion only when the account satisfies the server-side eligibility rules.

  • Eligible student/test account: may expose Delete when no protected identity or academic-record boundary prevents removal.
  • Current administrator account: Delete is intentionally not offered.
  • Privileged staff identity: protected from ordinary destructive account deletion.
  • Protected/formal academic record: the account may remain non-deletable because transcript, certificate, completion or other protected academic identity must remain intact.
  • Enrollment alone: should be diagnosed separately from account identity. Removing or changing a course enrollment is not the same operation as deleting the user account.

When two records appear to belong to the same person, first compare email address, verification state, role, enrollment and protected-record status. Similar names alone are not sufficient evidence that one record should be deleted.

Deletion is destructive.Deletion አፍራሽ ተግባር ነው። Do not use account deletion merely to correct enrollment, course status or testing-state problems. Diagnose the identity record and the enrollment/academic records separately first.Enrollment፣ course status ወይም testing-state ችግኝ ለማስተካከል ብቻ account deletionን አይጠቀሙ። መጀመሪያ identity recordን እና enrollment/academic recordsን በተለየ ይመርምሩ።
Security gate:የSecurity gate፦ when permanent deletion is permitted, the protected write still requires fresh privileged reauthentication with password and TOTP.Permanent deletion ቢፈቀድም፣ protected write አሁንም password እና TOTP በመጠቀም fresh privileged reauthentication ይፈልጋል።

Assigning course staffየኮርስ ሠራተኛ ምደባ (Course staff assignment)

For a course version, Administration lists assigned staff and allows an administrator to assign a selected user as Instructor or Assistant, or remove an existing course-staff assignment. This is a sensitive administrator write and is disabled unless the write flag and privileged MFA gate are satisfied.

አዲስ course version ሲፈጠር Instructor ወይም Assistant በተመደበለት ኮርስ ውስጥ ብቻ ለውጥ ማድረግ ይችላል። ከኮርሱ ውጭ ወይም ከፍተኛ ፈቃድ የሚጠይቅ ስራ ተጨማሪ authorization ይፈልጋል።

Certificate administrationየCertificate አስተዳደር

The certificate-admin table lists number, recipient, course, status and issue time. A valid certificate can be revoked by entering a reason and submitting the protected Revoke action. Revocation is preserved in the certificate record and becomes visible in public verification.

Certificate admin የcertificate መዝገቦችን ለመመልከትና የተፈቀዱ ለውጦችን ለማድረግ ይጠቅማል። Certificate ለመሻር Revoke የሚለው ከፍተኛ ፈቃድ ያለው protected write operation ነው።

Vocabulary audio authority workflowየVocabulary ድምፅ ስልጣን የሥራ ሂደት

The restricted Vocabulary Audio page is the authority workflow behind NT Greek 310 fixed recordings:

  1. Review coverage from Word 1 → 310 and listen to approved fixed audio.
  2. Use Device preview only as explicitly non-authoritative speech synthesis.
  3. Submit controlled batches or individual candidates with speaker/source metadata and accepted audio files.
  4. Listen to pending candidates and mark four QA gates: technical quality; complete beginning/end; all scripted forms present; Modern Greek pronunciation passes listening review.
  5. Approve only after all gates pass, or reject with notes.

Individual candidates accept MP3, WAV, OGG or M4A up to the audited 5 MB limit. The controlled pilot batch shown in the UI covers ranks 1–5.

የVocabulary Audio ገጽ ለNT Greek 310 የተፈቀዱ ቋሚ የድምፅ ቅጂዎችን የማረጋገጫ ሂደት ያስተዳድራል። Device preview non-authoritative ነው። Candidate ከapproval በፊት አራት QA gates ማለፍ አለበት።

Audit log and accountabilityAudit Log እና የተጠያቂነት መዝገብ

Administrator actions and many identity/academic actions emit audit events. The Administration Audit Log is the privileged read surface for reviewing those events. Instructor assignment changes, grading/return actions, certificate events, account/security events and other sensitive operations are designed to leave server-side evidence rather than relying on browser history.

የAdmin፣ Instructor፣ security እና academic ከፍተኛ ስጋት ያላቸው እርምጃዎች በserver ላይ audit events ይመዘግባሉ። Audit Log እነዚህን ማስረጃዎች ለprivileged review የሚያቀርብ ዋና የክትትል መዝገብ ነው።

Current administrative boundaries / known gapsየአሁኑ admin ወሰኖች / የሚታወቁ ክፍተቶች

  • The public/student manual should not expose internal admin secrets, session tokens, password hashes or private academic data.
  • The audited Security UI shows recent sessions but does not expose per-session revoke controls.
  • Assignment-file schema exists, but learner file upload/download remains intentionally gated off in the audited UI.
  • Admin writes can be globally disabled even when an administrator is otherwise authenticated.
  • Terms/Privacy templates still require final legal/privacy review before the platform manual can treat them as finalized policy.
Admin manual ለማጠናቀቅ የsecurity tokens፣ assignment file upload፣ admin global flag እና privileged security gate በproduction ሁኔታ መፈተሽ አለባቸው። Terms/Privacy የሕጋዊ ጽሑፎች የአሁኑ ስሪት መሆናቸውን ያረጋግጡ። ከፍተኛ ፈቃድ የሚጠይቁ ስራዎች ያለ fresh authorization መፈጸም የለባቸውም።