Admin
Identity administration surfaces. No auth gate yet (the peekaboo secret URL is the admission gate during dev). Once OAuth federation works, /admin/* will be gated by Identity sessions with an admin flag.
OAuth providers All configured
Enter Google + Microsoft client_id and client_secret. Required before federated sign-in works.
Service identities M6
Register Ed25519 public keys for non-human callers (CLIs, cron, internal scripts). Stub for now; real registration ships in M6.
Manage services