Secure AI Workspace with OAuth2 Proxy and Google
Description
Protect AI Workspace and future Operator Console modules using OAuth2 Proxy + Google. Establish identity-based access before expanding to additional operators or external users.
Acceptance Criteria
OAuth2 Proxy installed; Google OAuth client configured; /ai-workspace/ or /operator/content-workspace/ protected by Google login; allowed users documented; noindex/security headers validated.
Notes
Basic Auth is temporary; OAuth2 Proxy + Google is the practical real-security path without adding major infrastructure.
Edit Controlled Fields
Event History (1 events)
| Time | Type | Actor | Note | Old | New |
|---|---|---|---|---|---|
| 2026-06-04 02:10:10 | captured | system | Backlog item captured by WSAI_ContentEnginePivotLock_v1. | Secure AI Workspace with OAuth2 Proxy and Google |