Security

How the Local Archives are protected.

Bahá'í consultations are sacred and confidential. AssemblyFlow's architecture is shaped around that principle rather than added on after the fact.

Per-Assembly isolation

Each Assembly's records are kept entirely separate. A member of one Assembly cannot read, write to, or even learn of the existence of another Assembly's records. The boundary is built into AssemblyFlow at every level.

Authentication

Sign-in is by Google account. AssemblyFlow does not see, store, or have any way to recover your Google password — what it receives is an authenticated identity scoped to the email address you sign in with. That identity is bound to your membership on a particular Assembly; access to the Assembly's records flows from that binding.

Questions

For questions about security, write to admin@assemblyflow.org.

What we don't do