/api/identity/stats
Current Build 17 identity summary and production blockers.
Internal GCCAP operating surface
GCCAP does not delete operating records, trial packs, hardware activation surfaces or evidence automation layers. They are preserved for authorised client portal, command-centre and internal operating use while the public website stays clean for airline first impressions.
Open portal accessInternal GCCAP surface
The Identity Lab is the internal Internal system phase surface for managing identity provider readiness, MFA requirements, session hardening, role boundaries, user lifecycle controls and access reviews before real client onboarding scales.
StatusInternal / restricted surface. Not part of the public client walkthrough.
Operational layer
Use admin-gated endpoints to inspect and update identity readiness.
Current Build 17 identity summary and production blockers.
Local pilot, production OIDC and enterprise SSO provider readiness register.
MFA requirements for admin, command and client roles.
Production identity readiness scan with high/critical blockers.
Operational layer
Build 17 is intentionally a foundation, not a final SSO deployment.
The lab reports missing provider credentials rather than pretending SSO is connected.
Session, admin, ingest and identity secrets remain environment variables or future managed secret-store entries.
Local user flows remain acceptable for controlled pilot testing only.
Build 18 onward can add deployment, observability and identity provider integration hardening.