Supported platforms
| Component | Requirement |
|---|---|
| Browsers | Current versions of Google Chrome, Microsoft Edge, Mozilla Firefox or Safari. JavaScript and cookies must be enabled. |
| Operating systems | Any operating system that runs a supported browser, such as Windows, macOS or Linux. |
| Devices | Designed for desktop and laptop use. |
Network and connectivity
- Protocol: HTTPS, for both the application and the API.
- Encryption: your network must allow modern TLS (version 1.2 or later).
- Allow-listing: allow outbound HTTPS to your Active Steward™ instance's web address, which we confirm at onboarding, and to the Help Centre.
- Single sign-on: allow traffic to your identity provider (for example, Microsoft Entra ID).
- Bandwidth: a standard business connection is enough for everyday use. Uploading and downloading large dossiers needs a reliable connection.
- Location: primary hosting is in London, UK.
- Active Steward™ sends notifications, portal invitations and templated emails through a transactional email service. Ask your email team to allow these messages so they are not caught by spam filters; we will provide the sending domain details.
- If you use email filing, each partition has its own mailbox. Emails sent to it, or sent from Active Steward™, that include a record's code are filed against that record.
Identity and access
- Single sign-on: Microsoft Entra ID or Google using OpenID Connect. See single sign-on for what to provide.
- Without SSO: password sign-in, with optional time-based two-factor authentication using an authenticator app.
- Provisioning: users can be managed by hand in Active Steward™, or provisioned automatically from Microsoft Entra ID using SCIM 2.0.
- Microsoft Teams meetings: creating Teams meetings from Active Steward™ needs Microsoft single sign-on, and each user is asked to allow access to their calendar. Your Entra app registration must also allow the calendar redirect address we provide.
Security on your side
- Keep devices protected in line with your anti-malware policies.
- Use supported browsers with current security updates.
- Store API keys in a secure vault, give each integration its own key, and remove keys that are no longer needed.
Integrations
If you plan to connect Active Steward™ to other systems:
- Make sure your firewall allows outbound HTTPS to the Active Steward™ API.
- Confirm you can run or configure the integration tool you will use, such as an integration platform or a scheduled script.
- Agree data governance and ownership for each integration.
See integrations for the options.
People
- Nominate at least one administrator to manage users, roles, partitions and integrations.
- Nominate technical contacts to receive release and maintenance notices.
- Plan basic onboarding for users: navigation, reports and data import and export. Training is available at our offices, at yours or remotely.