Authority belongs to the author.
OIDC / VERIFIED IDENTITY
OPAQUE / HASHED SESSION
D1 / SITE CONSTRAINT
PASSKEYS / NEXT CEREMONY
OPAQUE / HASHED SESSION
D1 / SITE CONSTRAINT
PASSKEYS / NEXT CEREMONY
Customer identity
Enter the record.
Create an account or return through a cryptographically verified Google identity. Passkey enrollment follows this first verified session.
Google login is not configured.
The provider boundary is fail-closed; no placeholder account will be created.
The provider boundary is fail-closed; no placeholder account will be created.
We store the provider issuer and subject, not a password. Email is profile data and never silently merges identities.