Microsoft Entra ID
Primary identity with explicit tenant membership and active organization selection.
WorkBox combines centralized control with explicit tenant, module and business-scope enforcement.
Identity, isolation and authorization work together so users see and change only what belongs to their organization and responsibilities.
Primary identity with explicit tenant membership and active organization selection.
Each customer organization has its own bounded application database.
Operational files remain within a dedicated container resolved from the trusted tenant catalog.
Access is checked by organization, module, role, permission and applicable business scope.
Capabilities are enabled centrally and enforced consistently across the interface, APIs and jobs.
Relevant actions remain traceable while credentials stay outside source code and ordinary settings.
The same trust model applies across user interactions, APIs, jobs and operational files.
Authentication establishes the user; tenant membership determines the organizational context.
A module must belong to the organization before its roles and permissions can grant access.
Business-level scope narrows access within the active organization and module.
Relevant changes remain attributable and reviewable across operational workflows.
We can explain how WorkBox boundaries map to your organization.