Public Surfaces
Routes deliberately reachable without a session — savings previews, live detection coverage, tokenised dashboard sharing, and the public vendor directory.
Several routes are deliberately reachable without a session, serving acquisition, transparency, and external sharing.
The surfaces
| Surface | Route | Purpose |
|---|---|---|
| AWS billing savings preview | /aws-billing-savings-preview | An unauthenticated savings estimate — see value before signing up |
| Detection coverage | /detection-coverage | Public disclosure of detector coverage per provider, computed live |
| Vendor marketplace | /vendor-marketplace | The public vendor directory and per-vendor detail pages |
| Shared dashboard | /shared/dashboard/[token] | Tokenised external dashboard sharing, revocable at any time |
| Authentication | /login, /register, /forgot-password, /login/sso | Sign-in, registration, password recovery, SSO entry |
| Legal and policy | /terms, /privacy, /contact-us | Published legal terms and contact information |
Sharing a dashboard externally
Tokenised share links let stakeholders who should not have platform accounts see a dashboard — board members, auditors, a client's finance team.
Revoke when the engagement ends
A share link remains live until you revoke it. Treat link lifecycle as part of the engagement lifecycle. Managed from Cost Center → Enterprise Ops and Reports.
The detection coverage page
A deliberate transparency choice
The public detection coverage page publishes detector counts computed live from the running rule registry — rather than a number typed into marketing copy.
This means the figure cannot silently go stale. What the page says is what the platform actually runs, at the moment you load it.
See Detector Catalogue for the current breakdown by provider.