Parts
Pieces of the door — gate surface, identity core, APIs, companion stop-line.
Website gate (AskRue™)
- Live host:
D:\6-ruezals.chat-web-services\→ https://ruezals.chat - Visual: electrical pyramid, house molecules, otpauth enroll plate when needed.
- Brand face finders: three alignment triangles (TL / TR / BL), nested 18px white → black → white (not otpauth QR finders).
- Way-mark control: 3 triangles + gold dots (replaces old “Try another way” text).
- Key assets (web):
askrue-login-page.js,askrue-login-molecules.js,askrue-mark.js,askrue-login-page.css,assets/askrue/askrue-way-mark.svg.
Brand kit (hard copy + sharing)
Marks, hub paths, correspondence rules, share card, letterhead — full map in the same format as the brand locations doc:
Identity rules
- Login: username + password (email optional; login accepts username OR email OR secondary_email).
- Username: set once, immutable.
- Display name: changeable (public labels / name tags).
Auth / keyhole APIs
POST /api/auth/login— session; demands TOTP (or backup code) whentotp_enabled === true.POST /api/auth/totp-qr— password-gated enroll plate; soft hinge: may mint secret before confirm.POST /api/account/totp/start→/confirm— proper bind + backup codes once (account path).- AskRue API / keyhole for relying parties (
/api/askrue, platform OIDC-style) — staged registration.
To fill… full keyhole contract table (claims, platform keys) — see house HANDOFF-ASKRUE-KEYHOLE when linked here.
Legal / recovery surfaces
- Static: Terms, Privacy, AUP on the gate.
- Recovery: Contact Us runbook — no self-serve reset.
Companion (stop-line)
Phone / tablet = still AskRue™ — Allow / Deny / scan for a website login. Same door as the pyramid; they need each other until the translator is on the device. Not dining-hall login, billing, or bank. Depth → AskRue phone hub. App Store release is not the August bar.
- After the door opens → RUEZALS chat (stop).
- Wiki meta → RUEZALS wiki stub only.