Phase 3 workspace

Content control,with authority intact.

A focused CMS workspace for drafts, revisions, private images, previews, and audit history. Every operation stays behind explicit site roles and server-side policy.

Review local setup No website authority is delegated to the AI.
01

Authenticate

Auth0 sessions stay in the web application.

02

Control assets

Private images use approved R2 operations.

03

Audit

Draft and image changes produce attributable records.

Auth0 is not configured yet. Copy .env.example to .env.local, then provide the tenant, application, API audience, session secret, and Worker URL.