Federated identity
Hub issues a signed JWT. Every product verifies it via a shared JWKS. No duplicated identity DBs, no session-sync.
Architecture
Shared identity, shared billing, shared agentic fabric, wired so a Reach inbound message can open an Escalate ticket, or a Meet recording can flow into Agents for transcription, without integrations.
Hub at the center issues a signed JWT. Every product verifies it and uses the same identity, billing, and AI governance.
Hub issues a signed JWT. Every product verifies it via a shared JWKS. No duplicated identity DBs, no session-sync.
Every billable operation across every product flows into one organization ledger. Token packs for tools, per-org licenses for platforms.
Agents defines what every AI agent can call. The platform gateway denies anything outside the manifest before it touches the model.
Data boundaries at organization, workspace, and team level. One product cannot read another's data without explicitly going through Hub.
Every product runs its agents through the same Agents layer. One model, one set of governance guarantees, one audit trail.
Cloud, hybrid, or air-gapped on-premise. Same codebase, same architecture, runs on your infrastructure when required.
Because every product sits on top of Hub, data moves between them without anyone writing an external integration layer. Here's what happens by default:
Open Hub or contact us about sovereign deployment requirements.