Security
Trust built around organizations, roles, and sessions.
Organization Isolation
Users are routed through their organization code, with dashboard access tied to the active session and org hint.
Roles And Modules
Roles, modules, permissions, and organization overrides keep visibility aligned to responsibility.
Session Cookies
Refresh cookies support authenticated routing while public pages remain visible to signed-in users.
Password Reset Flow
Reset tokens and password policies help recover access without exposing account credentials.
Maintenance Mode
Administrators can restrict normal usage during upgrades, fixes, or operational maintenance windows.
Scoped Support
Support requests use organization code, user email, and lead code context to diagnose only the relevant workflow.
Route Protection
Public browsing and protected work stay separate.
Public pages remain readable while authenticated dashboard routes stay protected.
Login redirects active sessions back to the correct organization dashboard.
Dashboard requests without a refresh cookie return to the public home page.
Support can diagnose with organization code, user email, and lead code context.
