Incident entry / authorized
Start a real incident or rejoin one.
Operators can open either bundled scenario. Invited live-trial judges can open webhook-race only.
Credentials remain in this browser tab
Access tokens are kept in session storage, never local storage and never bundled into the web build.
No incident credential
Choose a real access path
Operators and invited live-trial judges enter with separately issued credentials. No credential is bundled into this page.
New controlled run
Open either bundled scenario
Operators can open either bundled scenario. Invited live-trial judges can open webhook-race only. Opening starts real isolated victim data and the five-seat analysis path. It does not approve a repair.
Existing authorized room
Join without opening another run
The access token opens the room. CSRF and step-up credentials unlock approval controls only.