Sentinel operations
Admin console
Audit trail
Append-only hash chain, verified nightly at 03:20 UTC and mirrored to a write-once EU archive.
Two-factor authentication
2FA is on This session is verified.
Enter the current 6-digit code from your authenticator app to unlock admin actions for this session.
Protect the admin console with a time-based one-time code from an authenticator app (Google Authenticator, 1Password, Authy…).
1. Add this secret to your authenticator app — either paste the full otpauth:// URI or type the base-32 secret:
2. Then enter the 6-digit code it shows to finish:
Write kill switch
Pause every engineer write across the fleet. Reads keep working; writes resume when you lift it. Not instant: the flag is held in Cloudflare KV, which is eventually consistent, so a write already in flight — or one reaching a worker whose cached read is still stale — can land for up to about a minute after you set it. For a single system now, have the customer tap Revoke in their app: that is enforced in the agent itself, on the machine beside the inverter, and is checked again on every write.
Engineer roster
| Name | Status | Role | Last login | Last IP | Actions |
|---|
Connected & recent systems
| System | Inverter model | Agent | Last seen | Liveness | Last code | Actions |
|---|
Full changelog
Every write / read across the fleet — newest first| Time | Engineer | System | Event | Reg | Was | Req → Ver | OK | Reason | Chain |
|---|