Sign-in trail
Every attempt, refused ones included. The page a refused person sees says only that it did not work — the reason lives here and nowhere else.
| When | Event | Outcome | Door | Reason | IP |
|---|
Microsoft directories
One multi-tenant app registration serves every company, so this list is the only thing standing between Tribune and every Microsoft directory on earth. A directory that is refused records itself here, which is why most rows arrive without anyone typing them. Enabling one lets everybody in that directory sign in.
| State | Name | Tenant id | Domain seen | Knocks | Identities | Last seen |
|---|
Google addresses
There is no directory behind a Google account, so the grain here is one address, one person. This list never grows a domain rule: a public domain accepted as a sign-in domain is a standing invitation to every Gmail on earth.
| State | Address | Name | Knocks | Last seen | Note |
|---|
People
One row per human — or two, when the same human has used both doors. Identities are never linked on a matching address, because that is exactly how an account is taken over by someone who registered the address first.