1.1 KiB
1.1 KiB
Security
Status: Partially migrated. The SSO provider and Discord ingress security pages are current.
This chapter will contain authentication, authorization, SSO, secrets, RBAC, and security-control guidance for administrators.
Planned pages
sso-providers.md— current provider configuration, discovery, callbacks, and failure modes.discord-ingress.md— current Discord service authentication, allowlists, bindings, roles, replay, and failure controls.secrets.md— document general secret handling after source/configuration verification.rbac.md— document roles and permissions from the canonical implementation.
The current SSO page reflects dynamic provider discovery. The Discord page documents only the verified Discord compatibility boundary; it does not claim Telegram or Matrix parity. Do not revive retired root documents or add frontend feature flags that the web flow does not consume.