Secure Operations Portal

JOSHUA

0.9.0.G3D.0.0 — Day 3B physical FIDO2 acceptance lab

Normal access

Platform passkeys such as Windows Hello, Touch ID, or Face ID are permitted for normal access.

Credential enrollment

Enrollment requires a one-time token generated locally by the administrator.

Privileged access

Separate privileged identity. A registered physical FIDO2 credential is mandatory.

Day 3B: portable and recovery keys may satisfy public privileged step-up. The ENCOM key is reserved for the future private MCP path and is not eligible for public JARVIS privileged login.

Session state

Not checked.

Local build gate

Production deployment is not authorized. DUMONT is not connected. Localhost WebAuthn credentials are lab-only. MCP remains private-path only.

Build 0.9.0.G3D.0.0 · staging-https