Shared Auth Center
Sign in once, keep LoginRelay local-session aware.
Dashboard and owner admin access use your shared auth center. The product still returns OTP assertions for customer apps, but this site itself no longer offers per-site magic-link login.
- PKCE and state cookies are set before redirect.
- The callback verifies the ID token with the auth-center JWKS.
- A local session cookie is created after exchange.
- The owner super-admin is seeded from qq260316514@gmail.com.
After Sign-In
One entry, two product surfaces.
LoginRelay uses the shared auth center only for identity. After the redirect, this site creates its own local session and drops you into the developer workspace.
- Dashboarddomains, sends, verifications, wallet
- Owner adminlaunch readiness, policy, support posture
- Auth modelshared auth center + local relying-site session
This site no longer exposes per-project magic-link login. User access starts at the auth center and lands back in the LoginRelay workspace.