OIDC & SAML
Okta and SAML paths for workspace SSO. Client secret stays in your IdP and our secrets store.
Identity first. Enterprise SSO opens the operating machine when you choose it — governed access with your existing identity provider.
Okta and SAML paths for workspace SSO. Client secret stays in your IdP and our secrets store.
Single sign-on across the workspace surface. No second password tax — with optional Zero Trust for additional control.
AI assists. Deterministic agents enforce envelopes: policy, human authority, and append-only receipts on consequential actions.
Cloudflare edge for public surfaces; private body for operators. Capacity and console credits stay versioned.