Setup (the things you do to Lens, never to a server)
A page per row, the button at the bottom. Every Setup row owns a page that is the documentation — what this does, what it writes, what it will not do, what happens if it goes wrong — because these are operations done rarely, under pressure, on a machine that is not the one you set up.
Encrypted backup on my key (§1), Duplicate my USB drive (§1), Your key (the travel copy, §1).
Licenses. The account's license and one per Lens server, each with what it is for, the free-server count against the account, the pending removals to finish on lockflare.com — and a text file of them all.
File Repositories. Storage described once and given a name (≤40), so every screen that has to put a file somewhere — backup plans, database dumps, exports, the Files chair — offers the name. Kinds: S3-compatible (AWS, R2, Backblaze, Wasabi, MinIO, Spaces, Hetzner, Scaleway, Storj… as presets that fill an endpoint and a region — one kind, not nine), Azure Blob, Google Cloud Storage, SFTP, FTP/FTPS, WebDAV, SMB, NFS, a server on this map, a folder on this computer. Secrets sealed like the saved logins and carried in the key backup; there is no Test button on purpose — Browse is the test, offered where there is a driver.
Notifications. One mail server described once and sealed; set up on any box from its Backups so the box can tell you when something goes wrong.
Themis — the model she thinks with (§11).