Skip to content

Features

Every feature ships in the same engine image, so there is nothing extra to install. The tables below group them by the job you are doing. In Free or license, Free means every install runs it with no license key, and a name such as search means your license has to carry that feature. Some free features have a paid part, named in the same cell.

Where in the console is the path through the admin console's sidebar. An entry shows only while its feature runs for your tenant, and many show only to a super admin. "None" means the feature works through the API and settings alone. A route of a feature that is not running answers 404. To choose which features start, and to apply a license, see Licensing and tiers. Prices are at lyeve.com/pricing.

FeatureBest forFree or licenseWhere in the console
Schema changesCreating and changing content types while the engine runs, with a preview firstFree. The schema canvas and presets of your own need schema-pro, and moving configuration between instances needs config-syncSchema builder
Content lifecycleDrafts, revisions, rollbacks and scheduled publishingFree, with 30 days of revision history readable. Older revisions, releases and comment threads need content-proContent
Content releasesPublishing or unpublishing a set of entries together, now or at a set timecontent-proDelivery > Releases, and the Release card on an entry
Editorial commentsDiscussing an entry in threads, with mentions by emailcontent-proThe Comments panel on an entry
Editorial reviewSign-off in stages before an entry goes liveFree, with one workflow per tenant. More, escalation, quorums and conditional stages need review-proReviews
MediaA shared file library with thumbnails and public linksFree, up to 1,000 generated image variants per tenant. More need media-proMedia library
Image transformsServing an image at any size, crop and format from a signed URLFree, up to 1,000 stored variants per tenant. More need media-proMedia library, an image's Preview
Bulk importLoading a CSV, XLSX, JSON, NDJSON or YAML file into a content typeFree. Saved mapping templates and the date, split and lookup transforms need content-proInsight > Imports
LocalizationTranslating entries and serving each reader's languageFree, with two locales per tenant. More need localization-proSettings > Locales, and the Translations panel on an entry
AIDrafting, translating and generating images with your own AI providersai. The support desk also needs supportOperations > AI
FeatureBest forFree or licenseWhere in the console
SearchFull-text and instant search in the admin and on your sitesearchSearch
GraphQL APIClients that want GraphQL queries and live subscriptionsgraphqlDelivery > GraphQL
gRPC APIBackend services that speak gRPCgrpcDelivery > gRPC
RealtimePages and apps that update the moment content changesrealtimeInsight > Realtime
RecommendationsSimilar entries, trending entries and a feed for each readerrecommendationsSettings > Recommendations
A/B testingTesting variants against each other on real trafficab-testingDelivery > Experiments
FeatureBest forFree or licenseWhere in the console
FlowsCustom API endpoints and automations, built on a canvas without codeFree, up to twenty flows per tenant on the free triggers and nodes. More needs flow-proFlows
Scheduled jobsCalling a URL on a cron schedule, with a history of every runFree, with failure alerts by email. Slack, Discord, PagerDuty and webhook alerts need alerts-proOperations > Scheduled jobs
AlertsAn email, a chat message, a PagerDuty incident or a signed webhook when a job fails, errors spike, log volume jumps or a probe goes downFree by email. The other channels need alerts-proOperations > Scheduled jobs, in a job's form. The others over the API
WebhooksTelling another system that content changed, and creating entries from incoming callsFree, up to 25 webhooks per tenant. More, templates, filters, retry policies and incoming webhooks need webhook-proDelivery > Webhooks, Incoming webhooks
Message broker eventsFeeding every content change to NATS, Kafka or RabbitMQmessagebrokerSettings > Message broker
EmailTransactional mail with templates and delivery trackingFree, with one SMTP provider and five templates per tenant. More providers, the API transport, more templates and triggers need email-proSettings > Email
Event replayRe-firing past content events to rebuild an index or recover a downstreameventsInsight > Events
FeatureBest forFree or licenseWhere in the console
Access rulesDeciding what each role may do per content type, flow and reviewFree, with rules for up to three roles. More need rbac-proAccess > Permissions
API keysScripts, apps and CI jobs that read or write contentFree. A monthly request limit per key needs apikey-proAccess > API keys
API key request limitsCapping how many requests one key may make in a monthapikey-proAccess > API keys
Password resetLetting people reset a forgotten password by emailFreeThe sign-in page, Forgot password?
Magic link sign-inSign-in by a single-use link sent by emailFreeThe sign-in page, Email me a sign-in link
Multi-factor authenticationA second sign-in step with an authenticator app, backup codes or passkeysFree. Enrolling a passkey needs mfa-proSettings > Two-factor authentication
OAuth sign-inSign-in with Google, GitHub or any OpenID Connect providerFree, with one provider. More providers, the Okta and Azure AD templates and role mapping need oauth-proAccess > OAuth providers
SAML single sign-onCompany sign-in through Okta, Azure AD or OneLoginsamlAccess > SAML SSO
SCIM provisioningLetting your identity provider create and remove usersscimAccess > SCIM provisioning
Trusted devicesSpotting risky sign-ins and devices a user has not used beforedevice-fingerprintSettings > Trusted devices
FeatureBest forFree or licenseWhere in the console
Rate limitingCapping how fast clients can call youFree. Custom rules, sign-in protection changes, tenant limits, address lists and the refusal history need rate-limit-proSettings > Rate limits
CaptchaSlowing down password guessing on the admin sign-inFree. A provider per tenant needs multitenant-customizationNone. The challenge appears on the sign-in page
Web application firewallBlocking SQL injection, cross-site scripting and similar attackswafNone
FeatureBest forFree or licenseWhere in the console
LogsSearching and tailing what the engine logs, and shipping it to Loki or ElasticsearchFree, retention policies and volume alerts by email includedInsight > Logs
Error trackingGrouping repeated errors, triaging them and getting told when they spikeFree, with 30 days of events and spike alerts by email. Chat, PagerDuty and webhook alerts, a tenant's own threshold and older events need alerts-proInsight > Observability > Errors
Metrics exportSending metrics to Prometheus, an OTLP collector, Datadog or New RelicFree, scheduled export included. A destination per tenant needs multitenant-customizationInsight > Observability > Telemetry
Request profilingFinding the slowest endpoints and memory growthFreeInsight > Observability > Profiler
Request captureInspecting, comparing and replaying recent requestsFree, replay and diff included, kept 24 hours. Capture rules, longer retention and replay sets need request-capture-proNone
Slow query analysisFinding requests slowed by the database, with index suggestionsquery-monitorInsight > Observability > Slow queries
Synthetic monitoringChecking your endpoints on a scheduleFree, with three probes per tenant run at most every 300 seconds. More, or more often, needs synthetic-monitoring-pro, and chat, PagerDuty and webhook notices need alerts-proInsight > Observability > Synthetic monitoring
API analyticsRequest volume, errors and latency per endpoint, tenant and clientapianalyticsInsight > API analytics
AnalyticsDaily usage figures per tenant, and content events sent to GA4, Mixpanel, Plausible or Segment with a delivery logFree. Retries, replay and the PostHog, Amplitude and webhook destinations need analytics-proNone
FeatureBest forFree or licenseWhere in the console
TenantsSeveral customers, brands or sites on one instanceFree, with the default tenant, domain mapping, the JSON Lines and dump migrate routes, and the cost ledger. More tenants need multitenant-provisioning, backup, restore and clone need tenant-backup, the database migrator needs migration-toolkit, and per-tenant admin branding needs multitenant-customizationOperations > Tenants and Tenant costs, Settings > Customization
ReplicationRunning more than one engine replica against one databaseclusterNone
CachingFaster repeated reads, in memory or in Redis, and cached answers for public routesFree, with one provider of any kind and 10 response cache rules per tenant. Failover, migration and more rules need cache-proInsight > Observability > Cache
Object storageKeeping files on local disk, S3, MinIO, Google Cloud Storage or Azure BlobFree, S3, MinIO, Google Cloud Storage, Azure Blob and region pins includedSettings > Storage
Concurrency tuningResizing background work on a running instanceFreeInsight > Observability
Idempotent requestsRetrying a write safely, so it runs onceFree, keys shared across instances through Redis includedInsight > Observability > Idempotency
Usage and quotasMetering traffic per key and tenant, and monthly snapshots for billingFree. Setting a tenant's limits needs usage-proOperations > Quotas and usage
Tenant quotasHolding each tenant to request, storage and bandwidth limits, and approving requests for moreusage-proOperations > Quotas and usage
Promote configurationMoving content types, flows, access rules, webhooks and settings to another instance in one bundleconfig-syncSettings > Config sync
FeatureBest forFree or licenseWhere in the console
Audit logA record of who did what in the admin, with retention and legal holdsaudit. Streaming to an outside sink also needs audit-proInsight > Audit log
Audit log streamingSending the audit log to Splunk, Datadog or your own HTTPS endpoint as it is writtenaudit-pro, on a license that also carries auditInsight > Audit log, Streaming
Data exportExporting content to files or S3, on demand or on a scheduledata-exportInsight > Data export
PII maskingHiding personal data in responses and logs, and seeing who read it unmaskedpii-maskSettings > PII masking
Data residencyKeeping each tenant's data in its assigned regiondata-residencySettings > Data residency

These screens come with the engine rather than with a feature, so no feature list turns them off. Users and the Settings screens below show only to a super admin.

ScreenWhat it is forRead more
Access > UsersCreating accounts and giving them rolesRoles and permissions
Access > Admin tokensCredentials for scripts that call the Admin APIAdmin tokens
Delivery > API access, API reference, API labsHow apps authenticate, every route the instance serves, and a place to send a real requestThe two APIs
Operations > PluginsWhich features run on this instance, and their settingsLicensing and tiers
Settings > LicenseThe license the instance runs on, and where a new key is activatedLicensing and tiers
Settings > ConfigurationEvery setting the engine reads, and where each value came fromConfiguration
Settings > SecurityWhich protections are on right nowSecurity controls
Settings > Privacy requestsExporting or erasing everything held about one personData protection

The User guide walks through the screens an editor uses.