Least privilege, synthetic records and clear operator control.
Pathsentra is being built to verify lead and booking journeys without collecting broader HighLevel access than the test requires.
HighLevel access
The controlled beta requires only contact read/write, calendar read and calendar-event write access for the selected location. Customer OAuth onboarding is not yet active. The internal sandbox fallback uses a location-scoped private token.
Credential handling
Connection tokens are encrypted before they are stored. Secrets are never displayed in the workspace after setup and should never be sent through email or chat.
Synthetic testing
Live verification creates clearly labelled synthetic contacts and appointments. A workspace owner must acknowledge this before a controlled test starts. Real customer records are not required for the test.
Workspace separation
The public product demo is read-only and illustrative. Connected locations, live incidents and evidence belong in the authenticated workspace.
Current limitations
Pathsentra is in private beta and does not yet offer a formal uptime commitment, security certification or production service-level agreement. These claims will not be made until they are independently supported.