Cresslink Product
Cresslink ID
Identity infrastructure built for the Cresslink product portfolio, and available to the custom systems we engineer for clients.
The Problem
What it solves
- Every new application re-implements authentication, and each implementation is a fresh opportunity to get security wrong.
- Session handling, password reset and multi-factor flows are exactly the code that should not be written twice.
- Access control written per-feature drifts until nobody can say who can do what.
The Solution
How it works differently
- One identity service with a reviewed implementation of the flows that carry security weight.
- A single access-control model shared across products.
- Audit built in, so authentication and authorisation events are recoverable after the fact.
Key Features
What the product does.
Authentication
Email, password and provider-based sign-in with secure session handling.
Multi-factor
Time-based one-time codes and recovery flows.
Authorisation
Roles and permissions evaluated in one place rather than per feature.
Audit trail
Sign-in, permission change and administrative events recorded immutably.
Tenant awareness
Organisations, membership and invitations as first-class concepts.
How It Works
From setup to steady state.
- 01
Integrate
Applications delegate authentication to the service.
- 02
Authorise
Permission checks resolve against a shared access model.
- 03
Audit
Security-relevant events are written to an append-only log.
Who it's for
- Cresslink products
- Client systems that need identity engineered rather than improvised
Technology & infrastructure
- Token-based sessions with rotation and revocation
- Argon2 password hashing
- TOTP multi-factor
- Append-only audit storage
Pricing
Included with Cresslink products
Available to client engagements as engineered infrastructure.
Be first in line for Cresslink ID.
Documentation and support are provided directly by the Cresslink engineering team.