Human Site User identity
TOOFOO authenticates the person. DelNOS authorizes the business context.
DelNOS does not own a second human password. After TOOFOO authentication, DelNOS must resolve product enrollment, business relationship, membership, workspace and capabilities on the server before protected business access is granted.
Authentication authorityTOOFOO Common Identity
DelNOS authorityEnrollment + Membership + Capability
Browser sessionTenant-neutral opaque session
Driver/Rider execution, service principals and devices remain separate principal classes. A TOOFOO Site User account never implies Driver, tenant or network authority.