TCI secure access
Render operations.
Authorized crew only.
The TCI bouncer verifies your company AWS session before the render estate opens. Sign in with your organization account—never with an AWS access key.
AWS federationCognito or corporate SSO/SAML
PKCE S256No client secret in the browser
Short-lived sessionRole access enforced by the API
AWS account accessTCI production render estate
Checking your sessionVerifying the signed authentication cookie…
AWS credentials are never requested, stored, or exposed to this application. Authentication uses Authorization Code + PKCE.
