Users authenticate through GitHub or a signed email magic link. Email ownership is verified before the workspace shell opens, which keeps onboarding simple without introducing passwords that the product does not need to manage.
Security
Security is built around scoped access, approvals, and least surprise.
Offyces is designed so identities, workspace membership, file access, reminders, work records, and repo-linked actions all stay bounded by the current workspace context and explicit approval rules.
Identity
GitHub OAuth and verified email links
Workspace access
Invite-based with project scoping
Approvals
Human checkpoints where trust matters
What this page covers
Verified identity first
Users authenticate through GitHub or a signed email magic link. Email ownership is verified before the workspace shell opens, which keeps onboarding simple without introducing passwords that the product does not need to manage.
Scoped workspace access
Workspace owners can invite the full team or restrict members to selected projects. Channels, files, notifications, and work records respect those boundaries throughout the product.
Repo-aware controls
Repository connections, branch drafts, and pull request drafts are modeled as workspace data. That makes it possible to show users which project, conversation, and work item a delivery artifact belongs to before broader automation is added.
Verified identity first
Scoped workspace access
Workspace owners can invite the full team or restrict members to selected projects. Channels, files, notifications, and work records respect those boundaries throughout the product.
Repo-aware controls
Repository connections, branch drafts, and pull request drafts are modeled as workspace data. That makes it possible to show users which project, conversation, and work item a delivery artifact belongs to before broader automation is added.
Security
Reporting and contact
Security questions and responsible disclosure reports should go to support@offyces.com.
Support and contact submissions are stored in the support workspace so the team can triage them consistently.
Workspace access, notifications, and delivery history are designed to make handoffs and audits easier for teams.