Tenant isolation
Identity, membership, immutable organization scope, database grants, and row-level security work together.
Security architecture
SEP is designed around tenant isolation, explicit authority, safe action boundaries, and evidence—not blind trust in model output.
Identity, membership, immutable organization scope, database grants, and row-level security work together.
Supabase Auth owns workforce identity and sessions; membership remains separate authorization.
Named capabilities pass deterministic authorization and domain postconditions before execution.
Customer-impacting and sensitive actions can require explicit human control.
Agent behavior is tested and released through governed lifecycle states.
Authority changes and important operations retain structured, secret-safe evidence.
Start with a real customer workflow
Create your SEP account now. Industry setup and guided onboarding are the next controlled release.
Get started