Identity dashboard
Your Auth account can exist before any app access. Link accounts, review verification gates, and prepare agent ownership from one default-deny control surface.
Current browser state
Checking for an Auth session...
Provider login should create an HttpOnly browser session here. Platform control opens only after policy grants
auth:dashboard.read.
Account graph
Linked accounts
Current login lane
Checking session...
Sign in to view the active provider and app binding.
INFNT™ identity
Staff/profile lane
Attach an INFNT™ login without granting product permissions.
CHIMA™ identity
Staff/profile lane
Attach CHIMA™ staff identity or later link a CHIMA Systems account.
If your email already exists at the provider, use Sign in / resume. Create new intentionally opens the provider registration lane.
Step-up security
Two-factor authentication
Secure the human owner before agent powers exist.
Passkeys are the preferred step-up factor; TOTP and recovery codes remain available as fallback controls.
Sign in to view MFA status.
Authenticator app setup
QR code appears after setup starts.
Scan this QR code with your authenticator app.
Use 1Password, Bitwarden, Google Authenticator, Microsoft Authenticator, or another approved TOTP app. If normal scan struggles, open the full-screen white scanner sheet.
Can't scan? Enter setup key manually
Waiting for setup...
Recovery codes display once after a fresh MFA challenge. Store them only in an approved vault.
Human-owned agents
Agent controls require KYC
Complete human verification before adding agents.
Every agent must be attached to a known human owner with name, verified email, contact details, approved KYC/KYB where required, scoped policy, expiry, revocation state, and audit trail.
1Email confirmedAccount owner proves mailbox control.
2KYC approvedID/KYB reference is stored outside raw auth session data.
3Agent reviewedAdmin approval maps owner, agent, app, scope, expiry, and audit.
4Broker enforcedAgents receive scoped authorization, not raw provider secrets.
Sign in to view owner verification, MFA, and agent-access gates.
Sign in to view or request agent review.
This creates a pending inactive agent record only. No app access, actor grants, service credentials, broker powers, or raw secrets are issued.
Active session
Session and policy
Checking session...
Platform control
Auth HQ dashboard
Sign in first. Platform control requires an owner session with dashboard permission.
Owner required