Super Admin or authorized read-only Security Admin session required.
NEEDS ATTENTION
0
important exceptions only
ACTIVE SESSIONS
0
visible + revocable
PASSKEY READINESS
—
phishing-resistant admin path
ADAPTIVE RISK
—
Explainable, context-aware risk
SESSION DEFENSE
—
review only suspicious sessions
IDENTITY PROTECTION
—
last-admin / recovery-owner guard
RECOVERY
—
guided containment, no auto-ban
Security Safety Preflight
What is wrong? • Why? • How serious? • What should I do now? One read-only answer across D12 evidence, sessions, recovery and identity safeguards.
Ready to correlate Phase-1 audit, Phase-2 audit, sessions, adaptive risk, recovery evidence and privileged-identity invariants.
Recovery Case Lifecycle
Human evidence workflow only: OPEN → INVESTIGATING → CONTAINED → RESOLVED. D12 does not ban accounts, grant permissions or trust devices.
Adaptive Risk • Why It Changed
D12 will explain what changed, why it matters, confidence, evidence and the safest next action.
Compromised-Account Recovery Guide
Creates a guided evidence case only. It cannot ban accounts, grant permissions, trust devices or execute business changes.
Security Actions
Select a security action to see risk, evidence, required assurance and the safest next step.
Sessions & Devices
Protective Mode
Lockdown changes D12 privileged-action preflight only. It does not stop Orders, Inventory or Warehouse.
Security Policy
JIT Privileged Access
Time-bounded authority request only. D12 does not grant permissions by itself.
Preserved Certified Security Intelligence
All V86.44 D12 security tools remain available: Audit Integrity, Security Self-Test, Observability, Reliability, Authentication/Device Trust, Governance, Access Policy, Admin Identity and Security Timeline.