Auth control plane
DiyaOS
Passwordless identity
Bootstrap
Create the first OS admin.
Login
Passkey, FIDO key, or OTP fallback.
Verify
OTP step-up and periodic checks.
Recover
No-password recovery entry point.
Profile
Security profile and access posture.
Posture
Recovery readiness and backup path.
Replace
Lost-device credential replacement.
Notify
Security event preferences.
Invite
Accept tenant or admin invitations.
Request
Ask for platform or tenant access.
Authorize
Approve app access and redirect.
Device
Register passkeys and security keys.
Scope
Choose OS, platform, tenant, or app context.
Session
Review current session and trusted device state.
Logout
End this browser session.
DiyaOS Auth
Accept Invitation
Onboard invited platform admins, tenant admins, tenant users, and service identities without passwords.
Invitation Details
Invite code
Email
Display name
Intended role
Accept invite
Set up passkey
Invitation ready
Accepting an invite should verify the invite, confirm the identity, register a credential, then request or activate the scoped role.