| Access | Email-link/OTP fragment authentication | Live for the admitted cohort. The callback establishes a persisted session, removes callback credentials from the URL, and preserves the platform host. |
| Access | Legal acceptance | Live. Acceptance is required and recorded durably before portal routes render. |
| Build | Personal agents | Source-ready, pending deploy and browser proof. Portal-native routes reuse the existing authoritative custom-agent create, edit, preview, publish, conversation, and analytics systems. |
| Build | Personal workflows | Source-ready UI; mutation authority pending activation. Portal-native routes rehost the existing durable automation workspace. AAL2/idempotent personal and organization workflow commands now exist in source, but their migration, Worker deployment, and authenticated canaries remain pending. This is not the public typed workflow DSL. |
| Build | Draft preview playground | Source-ready, pending deploy and browser proof. It selects a personal agent and opens its exact server-owned draft in the real metered preview runtime. It does not retain an API-key secret or accept a client-selected model. |
| Observe | Runs and projection timeline | Live for admitted signed-in personal workspaces. This is a customer-safe projection, not raw model or tool spans. |
| Observe | Redacted causal traces | Source-ready, pending migration, deployment, retention, permission, and redaction canaries. The value-free span contract is not the live projection timeline. |
| Observe | Exact browser-action approvals | Source-ready, pending its production canary. |
| Observe | Replay | Unavailable until a tenant-authorized, read-only replay contract exists. |
| Evaluate | Agent datasets | Source-ready, pending the additive database migration, Worker deployment, and a production isolation/immutability canary. |
| Evaluate | Experiments and model comparison | Backend authority source-ready; customer surface unavailable. Immutable bindings, bounded credit reservation, durable shards, evaluator/result receipts, and cancel/resume fencing exist in source. Migrations, deployment, capacity proof, and authenticated canaries remain pending, and no portal execution control is active. |
| Develop | Personal API keys | Live for the admitted cohort. |
| Develop | Webhook configuration and deliveries | Live partner preview for admitted personal workspaces. Signed-delivery HMAC has production evidence; retry, dead-letter, and eligible replay still need their separate live canaries. |
| Develop | SDK install | Source-only. The npm package is not published. |
| Manage | Usage | Live as evidence-bounded personal usage. |
| Manage | Profile, avatar, and preferences | Source-ready, pending deploy and browser proof. The portal reuses the existing authenticated profile and image-upload authorities. |
| Manage | Organizations and members | Source-ready, pending deploy and browser proof. Authorized owners/admins can manage existing Praxa membership and roles. This does not grant organization API keys or public execution. |
| Manage | Subscription display and checkout | Source-ready, pending deploy and billing canary. The portal reads subscription evidence and lets an eligible user begin an allowlisted Stripe Checkout. Active or retrying subscriptions fail closed instead of opening a duplicate purchase flow. |
| Manage | Subscription cancellation and payment methods | Unavailable in the portal. These remain with the original purchase provider until a verified Stripe Customer Portal/account mapping exists. |
| Manage | Organization keys and execution | Unavailable. |