OIDC support
Sign in through your existing identity provider, such as Keycloak. Group claims in the token serve as the authoritative source for permissions.
OIDC support, a central server for shared knowledge databases, shared Kanban boards, and security by design—Alcilla scales from a single workstation to an enterprise solution without changing its architecture.
Alcilla runs locally on each workstation and can be extended with a central role for teams—based on the same principles, simply serving more users.
Sign in through your existing identity provider, such as Keycloak. Group claims in the token serve as the authoritative source for permissions.
Your central instance can consolidate search services and knowledge databases for all users instead of requiring each instance to index and maintain them separately.
Boards are stored centrally and protected for the intended user groups through existing IAM/OIDC groups.
Personal content remains local. Approved knowledge is provided centrally and made available in a controlled way to authorized people and groups.
Areas without matching permissions are silently omitted instead of revealing their existence through an error message. A rate limit also applies per identity.
Both native TLS and a reverse proxy are supported, keeping the entire sign-in flow consistently encrypted.
Alcilla.Hub capability does not merely mean that Alcilla can support many users. It means that security is considered from the outset.
In centralized operation, users sign in through an existing OIDC-compatible identity provider.
Rather than having every local instance index the same shared knowledge, the central server maintains shared knowledge databases once and makes them available to authorized users.
Alcilla transmits no product telemetry. Internal company monitoring can be integrated.
The single-user workstation and central instance complement each other: personal working data remains local, while shared content is made available centrally in a controlled way.
| Single workstation (local) | Central (shared) | |
|---|---|---|
| Role | Personal workstation | Local workstations plus central instance |
| Personal content | Remains local on the device | Remains on the respective workstations |
| Shared content | Available only locally | Approved knowledge, shared boards, or AI models available centrally |
| Sign-in | No sign-in required | OIDC connection to an existing identity provider |
| Source of permissions | Local system and local configuration | Existing IAM: groups and roles from the OIDC token |
Use a single workstation without sign-in and with all functions available.
The central role requires sign-in through your identity provider.
A central search service can consolidate knowledge and AI models for all users.
Boards and areas can be linked to existing group structures from the identity provider.
With OIDC, TLS, and a central server, Alcilla integrates into existing identity and network structures instead of creating a separate silo.
We will show you how Alcilla fits into your existing infrastructure—from a pilot workstation to a central server.