Skip to content
← Back to blog
Browse by topic

Security

Browse 4 articles tagged security across approvals, auditability, plugins, and controlled AI operations.

OIDC for Operations Platforms: What Matters in Practice

What matters when running OIDC on an operations platform: session handling, group-to-role mapping, and self-hosted identity boundaries.

oidcauthentication

Brute-Force Protection for Self-Hosted Help Desks

Lockouts, layered rate limits, and audit logs that stop password guessing without locking out the operators who run the help desk.

authenticationsecurity

Public APIs and Internal Endpoints Should Never Share the Same Blast Radius

Public APIs and internal endpoints should never share a blast radius. How to separate them and what to enforce at each boundary.

architecturesecurity
Put it into practice

Start with one workflow

Follow a request through triage, review, and a plugin action. See the record that each step leaves behind.