Skip to main content
Tenant Settings controls organization-wide configuration including company details, custom domains, branding, and security options. Only Primary Admins can access these settings.

Accessing Tenant Settings

  1. Click Settings in the sidebar
  2. Select the Tenant icon from the settings navigation
Tenant Settings is organized into three tabs: Details, AI, and Branding.

Tenant Settings Overview

Tenant Settings

Tenant Details

Basic organization information:

Address & Preferences

Company Address

  • Street Address - Physical location
  • City, State/Province - Location details
  • Postal Code - ZIP or postal code
  • Country - Country of operation

Timezone

Select your organization’s default timezone. This affects:
  • Scheduled reports
  • Meeting times
  • Audit timestamps
  • User default timezone

Tenant Security Settings

Restrict to Assigned Companies

When enabled:
  • Users only see data for companies they’re explicitly assigned to
  • Improves data isolation between teams
  • Requires company assignments in user management
Roles with Bypass Company Restrictions enabled will still have access to all companies.

Advanced Settings

Additional security and configuration options for enterprise deployments.

AI Settings

The AI tab controls AI-powered features for your organization. Two independent switches let you decide who gets AI: everyone, only your internal team, or no one.

AI Features (Master Switch)

The Enable all AI-powered features switch turns AI on or off for your entire organization. When disabled:
  • No users, automations, or background jobs can generate AI content
  • AI buttons and panels disappear across the app

Client-facing AI

The Enable AI features for client users switch controls whether your client (company) users get AI-powered features. When disabled, client users see a non-AI experience while your internal team can continue using AI.
Both switches are enabled by default. The client-facing switch is only available while the master switch is on: turning off the master switch disables AI for everyone, including client users.
After changing either switch, click Save Settings to apply. The AI tab also contains the AI-Powered Home Page global toggle and the AI Context card, where you provide business context and contact information the AI assistant can use.

Custom Domains

Configure custom domains to access MSPortal with your own branding. Custom domains are managed in the Domains card on the Branding tab.

Adding a Custom Domain

1

Enter Domain

Type your custom domain (e.g., portal.yourcompany.com)
2

Copy CNAME Target

Copy the provided CNAME target value
3

Update DNS

Add a CNAME record with your DNS provider pointing to the target
4

Verify Domain

Click Re-check to verify DNS propagation
5

Set Primary

Optionally mark as primary domain

Domain Status

Sign-In Methods for Custom Domains

Choose which sign-in options appear on the sign-in page of your custom domains. The Custom domain login methods section sits below the domain list in the Domains card, with a checkbox for each method:
  • Sign in with Microsoft
  • Sign in with Google
  • Send Magic Link (email sign-in link)
Uncheck a method to remove it from the sign-in page of your custom domains, so the page shows only the options your organization actually uses. Click Save Settings at the top of the page to apply your changes.
At least one sign-in method must remain enabled, so the last enabled method cannot be turned off. These choices only affect your custom domains: MSPortal domains keep all sign-in methods available.

Enhanced Branding

Customize your organization’s branding:

Brand Color

Set your primary brand color, used for buttons, links, sidebar highlights, and other branded UI across the app.
1

Open the Colors Section

In the Branding card, open the Colors section.
2

Pick Your Color

Use the color picker or type a hex code into the input. Short hex values such as #0e9 and full six-digit hex such as #7c3aed are both accepted.
3

Preview in Light and Dark Mode

Preview cards show how buttons, sidebar items, badges, and links will look in both light and dark themes. The dark-mode variant is generated automatically from your chosen color.
4

Save

Click Save to apply. Your color takes effect immediately for every user in your tenant.
The Reset button restores the default MSPortal teal color. You will be prompted to confirm before reverting.
Where the brand color appears:
  • Primary buttons and call-to-action buttons
  • Links and link hover states
  • Sidebar active item highlights
  • Focus rings and selection highlights
  • Chart primary color
  • Status badges that use the brand scale

Client Onboarding Portal Branding

Your brand color automatically applies to the public client onboarding portal as well. When a client opens their onboarding link, the portal uses your tenant’s colors and logo so it feels like part of your brand, not a generic page. No separate configuration is needed.

Logo Options

Custom Sign-In Page

Use the Sign-In Page section to customize the first page clients see when they visit one of your custom domains. These settings do not change the sign-in page on MSPortal-owned domains.

Prerequisites

  • An active custom domain
  • Access to manage Tenant Settings or Launch Center settings
  • A primary light logo uploaded under Branding > Light if you want your logo on the sign-in card
1

Open Sign-In Page settings

Go to Settings > Tenant > Branding, then select Sign-In Page in the Branding card.
2

Set the logo size

Move the Logo size slider until the logo fits the sign-in card. The preview updates as you make changes.
3

Choose a background

Select Default, Solid color, Gradient, or Image.For an image, upload a PNG, JPG, or WEBP file up to 3 MB. Large landscape images work best. Use Photo darkening to keep the sign-in card readable over a bright image.
4

Choose the card style

Enable Frosted glass card to make the card slightly transparent with a blur effect. The glass effect appears when you use a custom color, gradient, or image background.
5

Write the welcome message

Enter a Welcome title and Welcome subtitle. Leave either field blank to use the standard MSPortal sign-in copy.
6

Preview and save

Review the preview, then click Save sign-in page. Open the custom domain in a signed-out or private browser window to verify the complete sign-in experience.
The custom-domain sign-in page also uses your primary logo, favicon, tenant color palette, and the sign-in methods selected under Branding > Domains.
To remove the custom background, card style, logo size, and welcome copy, click Reset to default and confirm. Your uploaded tenant logo, favicon, brand colors, and custom domain remain unchanged.

Sign-In Page Troubleshooting

Upload Guidelines

  • Format - PNG or SVG recommended
  • Background - Transparent backgrounds work best
  • Quality - High resolution for crisp display
  • Theme-aware - Upload separate light/dark versions

Live Preview

Use the preview panel to see how your branding appears:
  • Desktop view - Full sidebar with logo
  • Mobile view - Collapsed icon view

Best Practices

  • Complete all branding - Upload all logo variants for consistent appearance
  • Test custom domains - Verify domains work before sharing with users
  • Document settings - Record configuration for disaster recovery
  • Review periodically - Update branding when company details change