Skip to content
FLOWTYPE

SECURITY ARCHITECTURE

Designed for enterprise control.

How security is intended to be built into each layer of the platform. This is planned architecture; no certifications or attestations are claimed.

Request path

Every action passes the same controls.

  1. 01

    Request

    From the web app, API key or webhook

  2. 02

    Authentication

    Identity is established

  3. 03

    Authorization

    Role and workspace checked

  4. 04

    Execution

    Step runs with least privilege

  5. 05

    Credential boundary

    Secrets used, never exposed

  6. 06

    Audit record

    Action logged with actor and time

Controls

Select a control to see how it is intended to work.

Designed for enterprise control

Design intent · illustrative

Authentication

Designed to support email and password, Google and Microsoft sign-in, and enterprise single sign-on (SAML/OIDC) as an enterprise control.

  • Email and passwordPlanned
  • Google sign-inPlanned
  • Microsoft sign-inPlanned
  • Enterprise SSO (SAML / OIDC)Enterprise control

No security certifications or attestations are claimed. This describes planned architecture.

TALK TO US ABOUT SECURITY.

Have requirements for identity, data handling or audit? Tell us what you need.