Where everything is
Every page of the Developer Console and the Admin Workspace: the menu path, the capability that opens it, and the guide that walks through it.
This page is rendered from the same tables both applications build their own navigation from, so it cannot name a menu the product no longer has. Each entry states what opens it: a page shows only for someone holding one of the listed capabilities, and a control on the page only for someone holding the matching manage capability.
Developer Console
Where an integration is built. Everything under Access Control belongs to the Application and Environment selected in the switcher at the top of the left nav; the Tenant group is account-wide.
Admin Workspace
Where a customer's own staff administer people. The first group is open to every administrator; the account-wide group needs a governance capability; the last group shows the operational pages for the places you administer, in the Environment selected in the switcher.
Tell us how we can improve this guide.