Feature deep-dive
Modern auth — 2FA, OAuth, magic links and PATs
NextAuth v5 with progressive rate limiting, GDPR data export and full login history — so you can answer compliance questions in minutes, not days.
The problem
Auth is the easiest place to leak credentials, fail compliance and lose customer trust — and the hardest place to retrofit security after the fact.
What you get
2FA with TOTP + backup codes
QR-code TOTP enrollment plus printable backup codes. No SMS, no SS7 risk.
OAuth + magic link
Google, GitHub and Apple OAuth — plus passwordless magic-link sign-in for customers.
Personal access tokens
Scope-based tokens for API integrations, with full audit trail and expiration.
GDPR export + login history
One-click data export per user; full failed-attempt and successful-login history per account.
Plays well with
Login history, 2FA enrollment and PATs all surface in account settings — and Workflows can react to suspicious sign-ins.