Aevum Documentation Access Configuration

Version v1.0 | Date: 2026-04-19

Purpose: capture the current external documentation publishing and access-control configuration for the Aevum documentation library hosted behind Cloudflare.

Configuration Summary

AreaCurrent ConfigurationStatus
Documentation hostprivate.aevum.world points to the private Pages deploymentConfigured
Pages deploymentCloudflare Pages site created from the local HTML documentation libraryConfigured
Access controlCloudflare Zero Trust Access application protecting private.aevum.worldConfigured
Owner policyOwner Access reusable policy exists and is attached to the applicationConfigured
Guest policyGuest Access Request reusable policy exists and is attached to the applicationConfigured
Google identity providerGoogle Cloud OAuth 2.0 client created for Aevum accessConfigured
OTP / one-time accessRequest/approval access flow is part of the intended Cloudflare Access control pathDocumented baseline

Cloudflare Domain Inventory

  • aevum.org.uk
  • aevum.world
  • the-aevum.com
  • the-aevum.uk

Private documentation is intended to sit behind a subdomain of the canonical public estate rather than replacing the public site.

Canonical Private Host

  • Protected host: private.aevum.world
  • Purpose: private documentation library
  • Access model: approved users only

Google OAuth Configuration

Based on the provided configuration snapshot, Google Cloud has an OAuth 2.0 client created for Aevum documentation access.

FieldValue captured
Google Cloud projectMyUnreal3DGMAP
OAuth client nameAevum access
Client typeWeb application
PurposeIdentity provider support for Cloudflare Access
Operational note: this document captures the configuration state shown in the supplied setup snapshot. Secret values, redirect URIs, and client secrets must remain out of public documentation and be stored only in the approved secret-management path.

Cloudflare Access Policy Configuration

The current Zero Trust policy baseline uses reusable policies attached to the private documentation application.

PolicyPurposeExpected behavior
Owner AccessDirect owner/administrator accessAllows the owner to enter the private documentation site immediately after identity verification
Guest Access RequestControlled guest accessAllows request-based access for approved external users subject to owner approval

The policy model is identity-based access control, not a shared website password model.

OTP / Authentication Model

The intended security posture for the private documentation library is identity-first and approval-based.

Control note: the exact live authentication methods enabled in Cloudflare Zero Trust must remain aligned with the operational admin console. This document records the intended and observed baseline, and should be refreshed whenever authentication providers or approval rules change.

Publishing / Update Rule

Ownership

AreaOwner
Cloudflare domains and DNSPlatform / Owner
Cloudflare Pages deploymentPlatform / Owner
Cloudflare Access policiesPlatform / Owner
Google OAuth clientPlatform / Owner
Documentation refreshPM control layer after validated execution