KasiLabs AuthCentral authority
Identity control plane
Manage the shared account, organization, provider, session, and device-login foundation for every KasiLabs product surface.
Testing provider
GitHub
Local and staging OAuth validation
Production scaffold
Google
Credentials only needed at launch
Optional Resend
Email delivery
Invites and verification emails
GitHub ready
Authentication Methods
GitHub testing, Google production scaffold, passkeys, and passwordless device flows.
Shared RBAC
Organizations
Shared workspaces, active organization context, invitations, and member roles.
Central subject
Users
Central user identity, linked accounts, profile sync, and product-local provisioning hooks.
Signed claims
Sessions
Convex JWT issuance, active organization claims, session revocation, and device posture.
Controlled
Trusted Origins
Product origins, callback URLs, CORS, and hosted auth boundaries.
Planned
Audit Readiness
Production gates, OAuth checks, environment inventory, and security review evidence.
Deployment posture
Auth is the standalone control plane target. Any ai-automation-hosted authority path is temporary development scaffolding to remove during the rebuild.
1. Select dedicated Auth dev and production Convex deployments.
2. Configure OAuth, SMS, bridge, telemetry, and trusted origins on Auth.
3. Product apps consume signed central auth tokens only.