Auth surface
Session cookie auth for app routes with protected backend proxy endpoints.
Security
Azums enforces workspace/tenant context in backend requests. Frontend permissions mirror backend role rules and do not fabricate authority.
Session cookie auth for app routes with protected backend proxy endpoints.
API key secrets are one-time reveal only; key list never returns token values.
Receipts, history, callbacks, and replay lineage are backend-sourced durable records.