3.1
Access control
- Every page and API requires a signed-in session, except a short public allowlist.
- Each customer is a separate organization. Every query is filtered to it in code, and database keys stop records from referencing another customer.
- Admin-only actions such as adding keys, branding and triage are enforced on the server.
- Sessions lock after 15 minutes of inactivity, and a system use notice is shown before sign-in.