Phase 1
User detail

Source: c81 phase1-pages — User detail (PRO-21); user-detail-v1 promoted, teams-ideas-v8 / PersonExpandCard identity and agents sections folded in, sessions wired to Session detail, re-derived from the phase1 world

fixture state
person— review aid: dana = personal account · alexis = coverage gap · wes = stalled joiner · jonah = detected-only Hermes · kai = Windows gap
Teams & Users
DW
Dana WhitfieldGTMAccount executive
dana@qpoint.io·identity fromjamf·first seen Apr 28·last seen 1h ago
view in Inventory →

Dana Whitfield runs 2 installs on 2 accounts — 1 of them personal.

user-dw72hfqb (dwhitfield.72@gmail.com)

42M
tokens · 30d
13% of fleet flow · measured
$250
spend · 30d
estimated · heavy intensity · history in Cost Center
2
installs
2 monitored
5
sessions · 7d
2 of 5 on record on a personal account
identity → devices → installs → accountsone graph, read from the people side · subs carry the exceptions only

Devices — 1

1 of 1 sensored · from Jamf/Okta, not from what the sensor happens to see
dana-mbpmacOS 15.6 · macbookjamfsensor 1.14.2heartbeat 2m agodevice detail →
ChatGPT
1.2025.196monitoredlast seen 1h agoenterpriseorg-qpoint-8xk22
ChatGPT
1.2025.196monitoredlast seen 20h agopersonaluser-dw72hfqb (dwhitfield.72@gmail.com)

Agents — 2

2 monitored · 0 detected-only · one row per install
InstallMonitoredAccountModelsMCP serversSessions 7dLast seen
ChatGPT
1.2025.196 · on dana-mbp
monitoredenterpriseorg-qpoint-8xk22gpt-5.2google-driveslack31h agoview details →
ChatGPT
1.2025.196 · on dana-mbp
monitoredpersonaluser-dw72hfqb (dwhitfield.72@gmail.com)gpt-5.2none220h agoview details →

Accounts — 2

the account referenced on every inference call — where this person's usage actually flows
OpenAIorg-qpoint-8xk22enterprisein use on 1 install · 3 sessions on record · 8 users org-wide
OpenAIuser-dw72hfqb (dwhitfield.72@gmail.com)personalin use on 1 install · 2 sessions on record · 1 user org-wide

Personal account on dana-mbp, beside the enterprise org (org-qpoint-8xk22). Traffic here is outside the enterprise agreement — 2 of 5 sessions on record ran on it. The obvious control is block personal accounts — this page observes; enforcement lives in the control center.

Licensing posture only. Credential detail and the credential-risk verdict live on /identity →; the fleet's account posture is on Accounts →.

Sessions — 5 on record

5 in the 7-day sample · sessions live here, not on Inventory · each row is a receipt
Started
Agent
Account
Summary
Dur
Tokens
Est. $
Policy
2h ago
ChatGPT
enterpriseDrafted the enterprise pricing one-pager from call notes40m380k$20receipt →
21h ago
ChatGPT
personalPolished the Meridian proposal deck copy55m520k$30receipt →
3d ago
ChatGPT
enterpriseSummarized six discovery calls into an objection-handling doc35m300k$20receipt →
4d ago
ChatGPT
personalRewrote the outbound email sequences for the security-buyer segment30m260k$20receipt →
5d ago
ChatGPT
enterpriseBuilt the ROI comparison table for the CISO deck45m410k$20receipt →
5 sessions on record = the 7-day sample (5) · 30-day tokens (42M) are measured separately and never summed from this list · dollars estimated

Surface

what this person's installs touch — measured from tool calls, cwd, file access, and egress
Repos
none — non-engineering workflow
MCP serversFiles touched
none on record
EndpointsModels
1 device → 2 installs → 5 sessions on record1 of 18 people known to Okta/Jamf · as of Aug 31 17:00Zview in Inventory — same graph, technology lens, pre-filtered →

Composition notes

  • Question: what is this person's AI footprint, and is it accounted for? The footprint is the chain (devices → installs → accounts → sessions → surface); the accounting is whether each link is covered, monitored, enterprise, and producing telemetry. The verdict answers the accounting in one sentence; the body lays the footprint out.
  • Verdict line from verdicts.userDetail(world, id), priority no-sensor → personal account (warn) → stalled joiner → detected-only → clear, wrapped by userDetailVerdict which adds one rung above clear: an account with no agreement on file (xAI's team id) is signal, not clear. The personal account outranks everything but "we cannot see her at all" — the c21 §5 ruling.
  • The chain is the hero (c21 §2.9), at two altitudes: the strip of Phase1EntityChips right under the verdict (subs carry exceptions only: no sensor · detected-only · personal · seat only), then the sectioned body walking the same links at reading altitude. Two pages, one graph — this is the people lens; "view in Inventory" carries ?person= for the technology lens.
  • Headline stats are four Phase1StatBlocks (tokens · spend · installs · sessions) with one attention device per state, on the sub line: Dana's is the sessions block (n on a personal account, warn), Wes's the sessions block (install seen, never run), Jonah's the installs block (detected-only). Alexis's coverage gap is the verdict's and the chain strip's to say, not a fifth block. Tokens are measured, dollars estimated; intensity rides the spend sub (thresholds: heavy ≥ 40M · moderate ≥ 15M · light > 0 tokens · 30d).
  • Personal accounts unmissable (c21 §2.6, §5): the account row is bordered in the error register and names the device and the enterprise org it sits beside, with the personal-session count; the sessions table flags those rows; the strip's account chip says personal. Observation only — the block-personal-accounts control is pointed at, not built.
  • Coverage honesty: an uncovered device is a dashed amber card that says which kind of gap it is (Windows platform gap vs deployable today) and that the empty rows are a statement about the sensor, not the person. Seat held with no sensor → the investigate line on the account row. Detected-only installs get the three-absences note.
  • Sessions attach to users (c21 §2.7) and stay a list — DataTable with per-column slots, row click and "receipt →" both to Session detail. Labelled honestly: the 7-day sample plus older scenario sessions, 30-day tokens measured separately and never summed from the list. Sensitive-file and policy-event counts come from sessionTotals (events when present, file links otherwise).
  • Deliberate omissions (c67 v8): credential severity math → /identity (quiet link), spend history → Cost Center (quiet sub on the $ stat), per-agent config → Agent detail. The LLM work summary in the world is not rendered — no designed treatment yet; it stays a fixture field.
  • Derivation: everything comes from personFootprint(world, id) in derived/user-detail.ts over the world's walkers; nothing hand-typed, nothing fabricated. First seen reads from the earliest install, so a person with no installs prints the honest absence.

Qpoint Brand Style Guide