Access control
Your organization's access to the application
- Single sign-on (SSO): when you need it, we integrate access to your
application with your corporate identity provider using standard
protocols (OIDC / SAML / OAuth2). This way your organization manages
onboarding, offboarding, and password policies in one place.
- Two-factor verification (MFA/2FA): available to strengthen user
access.
- Permissions within the application: control over which user sees or
does what at the business level is defined by you within the
application.
Administrative access (Dynapps EspaƱa)
Access by operations staff to the platform is strictly controlled:
- Least privilege: each person has only the permissions necessary for
their role.
- Strengthened authentication with two-factor verification.
- Access through an encrypted private administration network;
administration is not exposed to the public Internet.
- Access logging: administrative actions are traced.
- Immediate revocation when a person no longer needs access.
System identity
Platform components authenticate with each other using their own
technical identities and scoped permissions. No shared credentials or
generic "superusers" are used for day-to-day operation.
Recommendation for you
Enable single sign-on with your identity provider and require
two-factor verification for your users. It's the single measure that
most reduces the risk of unauthorized access.