Identity & sessions
Understand the account behind the work. Authentication connects a person to a session through the platform's identity contract.
Your financial workspace brings together sensitive records, connected services and people with different responsibilities. Understand the controls behind that work and the evidence that supports them.
Garden follows the Keystone platform model: identity and sessions belong to Auth, access and entitlements belong to IAM, and billing belongs to Garden.
Understand the account behind the work. Authentication connects a person to a session through the platform's identity contract.
Give people and integrations access appropriate to their work. IAM owns permissions, roles, grants and entitlements.
Keep billing accounts, usage, invoices, wallets and plans in the financial platform, with the relevant account context.
Ask for the relevant records and keep them beside the explanation. Explore a review vision that makes the account, the decision and its supporting context easier to follow.
What needs a closer look before we move forward?
Bring the important checks into the conversation.
Evaluating Garden for a regulated workflow or a security review? Contact the team for the current control documentation, available reports and the scope that applies to your deployment.
Discuss identity, permissions, provider connections, data handling and deployment-specific controls with the Garden team.
Certification status and report scope must be supported by current documents. Request the available evidence directly; this page does not assert a SOC 2 or ISO certification.
Send security findings to security@gardens.ml. Include enough information to identify the affected component and reproduce the issue without exposing customer data.
Compliance depends on your business, jurisdiction, policies and implementation. Garden provides financial and review workflows; those tools do not replace your organization's responsibilities.
Email security@gardens.ml with your review requirements and deployment context. The team can identify the current evidence and scope available for your review.
New L1fe applications integrate through Keystone. Auth owns identity and sessions, IAM owns access and entitlements, and Garden owns billing.
Read Garden's privacy policy and contact privacy@gardens.ml with questions about your account or deployment.