Learn how the IHNYC services built and stewarded by Affective Technologies work, how operators maintain them, and where their access and data boundaries sit.

Choose a service

ServiceWhat it coversStart here
01 / House DeskPrograms calendar, Bulletin, resident management, event and message operationsExplore House Desk
02 / PubPublic pages, setlist and displays, scheduling, venue systems, and floor operationsExplore Pub

Common tasks

GoalDocumentation
Subscribe to or manage a Programs calendarUse House Desk
Deploy or troubleshoot House DeskOperate House Desk
Deploy or troubleshoot Pub systemsOperate Pub
Understand staff sign-in and product rolesIdentity and access

One identity boundary, two permission systems

flowchart LR
  ID["Authentik identity"] --> EDGE["Cloudflare Access admission"]
  EDGE --> DESK["House Desk"]
  EDGE --> PUB["Pub"]
  DESK --> DESKROLE["House Desk roles and permissions"]
  PUB --> PUBROLE["Pub roles and permissions"]

Authentik is the planned shared staff identity provider. Cloudflare Access remains each application’s edge admission layer, and each product remains authoritative for its own roles and permissions. A person being able to sign in does not by itself grant access to either product.

Shared platform

The shared platform section documents identity, domains, routing, integrations, and the security boundary that House Desk and Pub share. It intentionally excludes secret values, private infrastructure addresses, recovery material, and production-only procedures.

Scope and stewardship

Affective Technologies LLC independently builds and stewards these technical services. It is not affiliated with the IHNYC Resident Council, International House New York, or AVI Foodsystems. Resident Council governance, voting, and council-system documentation remain at docs.ihnyc-rc.org.