Discord-authoritative
Stable guild and role IDs are used as permission sources rather than relying on role names that can change.
Nexus overview · Identity & access
Nexus is built around Discord as the authoritative account identity, with configured Discord memberships and roles combined with Nexus groups, departments, ranks, certifications, duty state, temporary grants, and explicit permission rules. Availability of individual login and permission features depends on the current deployment state.
Authentication
Nexus is designed so members authenticate with Discord and return to the same Nexus identity on web and future clients. Mobile login is intended to use secure Discord OAuth flows rather than requiring a nearby computer.
Stable guild and role IDs are used as permission sources rather than relying on role names that can change.
Configured Discord guilds can contribute to one Nexus member's effective access without creating separate Nexus accounts.
Biometric, passkey, device-unlock, or short-lived pairing methods can protect returning sessions while Discord remains the account authority.
Permission engine
Nexus should be simple to administer for routine access while still supporting narrow controls when a sensitive workflow needs them.
Discord roles, Nexus groups, department, rank, certification, duty, character, user-specific rules, and environment.
ANY, ALL, and NOT conditions; inheritance; source priority; explicit allow; configured deny precedence; and temporary permissions.
Tenant, module, action, record type, department, user, role, group, environment, and other configured data scopes.
An effective-permissions view should show exactly what granted or denied each capability instead of making administrators guess.
Why it matters
A civilian, recruit, dispatcher, trooper, fire officer, department commander, developer, and Homeland Security leader have different responsibilities. Nexus navigation and actions are intended to reflect that automatically.
See how identity connects to personnel, training, tickets, applications, and approvals.
Continue →RuntimeSee how effective permissions can become in-game entitlements.
Continue →ControlsSee how sensitive access and consequential actions are controlled and logged.
Continue →