Authentication
Sessions live server-side. Passwords are hashed. Login is rate-limited. Logout requires the CSRF token issued at sign-in.
WINDELS AI WORKFORCE
Safety & trust
Sessions live server-side. Passwords are hashed. Login is rate-limited. Logout requires the CSRF token issued at sign-in.
Hiding a menu is not enough. Pages call requireLogin / requireAdminPage. APIs return 401 or 403. Writes re-check RBAC and CSRF.
The platform boots with the kill switch active. Paper and broker orders are blocked until an authorized operator releases it.
Synthetic candles, sandbox sports and missing providers are labelled. Missing values stay null. CSV export is formula-safe.
Logins, contact inquiries, user creation and trading events are written to audit_logs with an actor.
Order submission needs an authenticated bridge, TRADING_ENABLED, and a demo account unless live is explicitly allowed.
Guidance only. No private account, market, sports, lottery or lead records are exposed to this assistant.