Execution status: PublicPraxa’s existing product has organizations, memberships, roles, and team surfaces. The developer portal now has a source-ready management view over that existing authority. This documentation does not claim that the new portal view is deployed or production-canaried./v1execution remains limited to admitted personal tenants. Organizationpraxa_sk_keys, organization execution, pooled organization billing, organization key administration, and enterprise governance are unavailable.
Source-ready portal management
After deployment, a signed-in user can use the developer portal to:- list the Praxa organizations they belong to and see their current role;
- create an organization through the existing organization authority;
- inspect an organization’s member directory;
- add an existing Praxa username as a member or admin;
- change eligible member/admin roles; and
- remove an eligible member after explicit confirmation.
Current public tenant
A live preview key resolves to one server-derived personal tenant. The client cannot set or switch tenant, user, organization, billing account, or role in a request body. Keys, runs, events, cancellations, webhooks, and usage are re-authorized against that personal tenant. The signed-in personal key console supports list, create, rotate, and revoke for admitted accounts. Membership shown in the portal does not make an organization key appear and does not delegate organization execution.What an admitted user can inspect today
- customer-safe durable run projections;
- resumable lifecycle events;
- evidence-bounded personal usage and API-key attribution when proven; and
- existing Praxa organization data through already-deployed product surfaces.
Organization execution gates
Organization execution requires more than attaching anorganizationId:
- server-authoritative organization-unit delegation for every public route;
- organization billing ownership and fail-closed reservation authority;
- least-privilege organization key create, rotate, revoke, and audit controls;
- tenant-isolation and cross-tenant negative tests across keys, runs, events, approvals, webhooks, usage, and cancellation;
- offboarding and revocation semantics that invalidate delegated access; and
- authenticated production canaries before documentation moves the capability to live.