DeskBridge Sovereign
Controlled business operations
Controlled business platform
Sign in to DeskBridge Sovereign
Open your assigned business applications and shared company records.
The broker applies company policy, multi-factor authentication and assigned-product controls. Credentials are sent directly to the DeskBridge broker and are not retained by this application.
Today
Welcome
Companies0Available to your accountDirectory entries0In the selected companyApplications0Assigned through the broker
Shared master data
Directory
Relevant Sovereign products reuse these controlled company, contact and address records.
Press / to search
Duplicate review queue
Candidates are normalised and confidence-scored. No record is merged automatically.
Master-data stewardship
Directory data quality
Apply company rules, assign exceptions and review deterministic duplicate confidence.
Quality and duplicate policy
Shared product and reference master
Items, units and catalogues
Maintain governed identities used by Flow, Forge, Ledger, Execute, Claim and authorised Engage workflows.
Items
Change and approval queue
Create and govern shared master data
Controlled lists
Shared reference data
Maintain selectable values without hard-coding customer-specific lists.
Add or amend a reference value
Client dashboard
Company access
Assign users to the selected company and control whether they can read, operate, or administer it.
Company administrators can add or change operating companies. Read and operate users cannot. Product, mail and Workspace entitlements remain separately controlled by the DeskBridge broker.
Governed access requests
Request time-bounded company access. Manager, data-owner and application-owner decisions are enforced in the catalogue sequence; requesters cannot approve their own request.
Authoritative identity graph
Link Directory, People, broker, mail, Workspace and device identities without copying protected records. Merge, split and recovery changes require independent approval.
Machine identities and API clients
Govern service accounts, workload identities and API clients as non-human identities. The access service issues client credentials after independent approval. Core stores only their governed fingerprint and receipt; never paste a client secret or private key here.
Effective access and certification
Review company, role, product and location access at any effective time. Temporary grants expire automatically and certification decisions are immutable.
Privileged access
Request a maximum eight-hour just-in-time session or one-hour break-glass session. Independent approval, beneficiary checkout, recorded actions, revocation and post-use review are enforced.
Tenant and company control plane
Govern company lifecycle, environment promotion and rollback, policy simulation, licences and delegated client roles. Submission and approval must be performed by different authorised administrators.