APIs, webhooks, sandbox, and key governance placeholders.
The developer portal prepares a future authenticated developer experience without issuing API keys, exposing provider credentials, calling providers, or enabling production execution.
Reviewer demo mode uses mock data only. Provider credentials, payment credentials, customer PII, and unrestricted live financial execution are not exposed through these pages.
Sandbox visibility without credentials.
API catalog
Demo-safe placeholder content only.
- No real credentials displayed
- No provider execution
- Approval required before production access
Webhook readiness
Demo-safe placeholder content only.
- No real credentials displayed
- No provider execution
- Approval required before production access
Sandbox status
Demo-safe placeholder content only.
- No real credentials displayed
- No provider execution
- Approval required before production access
Key references
Demo-safe placeholder content only.
- No real credentials displayed
- No provider execution
- Approval required before production access
Developer access uses role-aware identity readiness without issuing credentials.
Provider-agnostic identity with WorkOS readiness.
The website now reads a shared identity abstraction and repository layer for provider readiness, sessions, organizations, members, invitations, roles, permissions, workflow state, and lookup surfaces. WorkOS stays configuration-only without returning credentials or making provider network calls.
Session
demo_active
Demo mode
true
Organization
under_review
Verification
pending
Members
1
Invites
1
Roles
6
Network calls
0
Users stored
1
Sessions stored
1
Registrations
1
Security events
1
Role assignments
1
Team hierarchy
1
Registration: in_progress
Organization creation: in_progress
Invitation lifecycle: draft
Verification lifecycle: pending
Role assignment: completed
Repository backed: true
Provider execution enabled: false
Financial execution enabled: false
Settlement execution enabled: false
Ledger posting enabled: false
Treasury execution enabled: false
Secret values returned: false
WorkOS production activation stays configuration-only.
Production callbacks, logout redirects, session cookies, signed claim validation, organization provisioning, and role enforcement are modeled without enabling live authentication or returning secret values.
Decision: BLOCKED
Readiness score: 36
Health endpoint: /api/identity/health
Production authentication enabled: false
Callbacks
blocked
Logout
blocked
Session cookies
blocked
Signed claims
blocked
Organization provisioning
ready
Role enforcement
ready
Production safety
ready
Secrets returned
blocked
