clientst0r at scale: client hierarchies, roles, API keys and imports
For the clientst0r administrator who models clients with several sites and connects other systems: parent and child organizations and what each can see, site SLA overrides and shared locations, role templates beyond the four simple roles and the client org-admin flag, API key scopes for multi-client integrations, and bringing data in with the CSV field mapper, platform imports, PSA and RMM organization import and network controller sync, including the private-IP (SSRF) protection.
- Level
- Advanced
- Length
- About 50 minutes
- Contents
- 3 lessons · 1 video · final exam
- Status
- Published · updated 2 Oct 2026
- clientst0r · open source
- clientst0r · open source
Skills you'll practise
- Model a multi-site client with parent and child organizations and predict what each user and report can see
- Choose role templates and the client org-admin flag for staff, clients and contractors
- Create API keys with the right organization scope and predict which requests succeed
- Import and sync data (CSV, platform imports, PSA/RMM organizations, network controllers) without duplicates
- Diagnose integration failures from their HTTP status and the private-IP protection
Course outline
- 1.clientst0r at scaleVideo · 1 min
- 2.Clients with many sitesLesson · 17 min
- 3.Roles that fit the jobLesson · 16 min
- 4.API keys and bringing data inLesson · 17 min
- 5.clientst0r at scale: client hierarchies, roles, API keys and imports: knowledge checkKnowledge check · 16 questions
- 6.Final exam9 questions · passing it completes the course, so people who already know the material can test out
Sources it draws on
The lessons and questions are written from these references, so learners can go back to the original.
- clientst0r README: positioning, security summary, updating and backups, limitations
- clientst0r FEATURES.md: vault, native PSA (SLA engine, workflow rules, contracts, quotes, invoices, approvals), integrations, data import
- clientst0r CHANGELOG.md: release history (vault access rules v3.17.163, approvals and break-glass v3.17.241/247, SLA pause and breach recording v3.17.563, billing fixes v3.17.561 to v3.17.581, multi-organization API v3.17.496)
- clientst0r docs/ROADMAP.md: phases 18 (multi-location hierarchy), 31 (vault access rules) and 37 (vault approval and break-glass)
- clientst0r ORGANIZATIONS.md: organizations, user types, roles, role templates, API access control
- clientst0r docs/api-multi-org.md: multi-organization REST API access and key scopes
- clientst0r user guide: API and integrations (authentication, endpoints, webhooks)
- clientst0r docs/ORGANIZATION_CASCADE_DELETION.md: what is deleted or preserved with an organization
- clientst0r docs/INTEGRATION_SETUP_GUIDE.md: PSA and RMM connection parameters and troubleshooting
- clientst0r .env.example: every supported setting with inline guidance
- clientst0r user guide: locations and WAN connections
- clientst0r SECURITY.md: security policy, audit logging, API keys
- MSP Zero: clientst0r tool page
See it with your own jobs and topics
Tell us about your team and we'll walk you through setup, from choosing jobs to your first skills check.