Global library
Global admins maintain packages, scripts and alert rules that every tenant
sees. In the database these rows have no tenant (tenant_id IS NULL) and
are readable by all tenants.
Global packages
Admin → Global packages works like a tenant's
Packages page. Tenants see global packages
read-only (Shared by the global admins) and can deploy them. Only global
admins can change them (package_read_only).
Typical content: browsers, 7-Zip, PDF readers, remote-support tools, the things most customers need.
Global scripts
Admin → Global scripts works like a tenant's Scripts library, with versions and typed parameters. Every tenant's technicians can run them; tenants cannot edit them.
Global alert rules
Admin → Global alert rules holds the rules that apply to every
tenant (rule types). The five
defaults are created by migration 0006. A tenant can switch a global rule
off for itself; it cannot change it (global_rule).
Anything in the global library reaches every tenant's devices. Global scripts and packages run as SYSTEM on customer machines: review them like production code.