Microsoft Entra SSO
Sign in with Entra ID; refresh-token rotation with replay detection. Per-tenant RBAC across dev, admin and platform roles.
Enterprise
Forge is built for teams whose releases face an auditor. Entra SSO, tenant-scoped registries, and a four-layer non-bypass guarantee that no single credential can defeat.
Enterprise
Sign in with Entra ID; refresh-token rotation with replay detection. Per-tenant RBAC across dev, admin and platform roles.
Every audit and release is scoped by client_id. Per-client policy floors layer on top of the framework — stricter, never weaker.
Admin-only sign-off with an append-only audit trail. The push-service polls and ships only after approved=true.
No --force flag, anywhere. The verdict is the gate, and the gate is enforced on four independent layers.
Non-bypass guarantee
Forge will not release without a fresh GO verdict on the same SHA.
A human admin signs off in-app; the approval is recorded, tenant-scoped.
A separate service performs the push with its own scoped deploy key.
Server-side push rules reject a push from any other identity.
We'll walk through the non-bypass guarantee and how Forge evidence maps to your control framework.