Skip to main content
Authentication · OAuth 2.0

Step inside the
authorization vault.

Sign in with your organization's GitHub. We never see your password, we never read source code outside manifest scope, and every action we take is recorded before it executes.

Read-only by default — only dependency manifests, never code.
Audit ledger records every action before it runs — non-repudiable.
Human-in-the-loop — engineers approve every fix. Zero autonomous merges.
Revoke any time — manage access from GitHub Settings → Applications.

Secure Access

Authorization is delegated to GitHub OAuth 2.0.

$os-vault.handshake --secure --idp=github
> OK
> OK
> OK
>
Continue with GitHub

By continuing you accept the Terms and Privacy Policy. Don't have an account? Create one.