Authority boundary
Controlled connection model
The middleware connects and translates. It cannot originate financial decisions, choose postings or present financial state directly to applications.
THREASURYIntegration & Ecosystem Platform
Institutional connection layer
Control Tower brings partner security, ecosystem operations, approvals and assurance evidence into one governed operating surface.
Restricted operations surface
Authenticate with a governed operator key. The credential is exchanged for a short-lived secure session and is never retained by the browser.
Need access? Contact a Threasury security administrator. Do not share credentials through email or chat.
Live institutional posture
Connection integrity, ecosystem risk and delivery health across the Threasury Gateway.
Authority boundary
The middleware connects and translates. It cannot originate financial decisions, choose postings or present financial state directly to applications.
Durable backbone · 24 hours
Awaiting event telemetry
Governed consumers
Prioritised assurance
No open signals
Tamper-evident trail
Ecosystem topology
Govern every FEI, Ledger, BFF, partner, provider and institutional service connection.
| Connection | Type & zone | Environment | Authentication | Health | Last signal |
|---|
Four-eyes governance
Review consequential integration changes with evidence, expiry and separation of duties.
| Request | Target | Risk | Requested by | Expires | Status |
|---|
Trust & assurance
Investigate policy, screening, certificate, reconciliation and security-assurance signals.
Regulated provider evidence
Request and track sanctions, PEP, registry, identity and fraud screening without moving decision authority into the Gateway.
| Screening | Subject reference | Provider | Jurisdiction | Outcome | Evidence | Requested |
|---|
Deterministic escalation
Route governed alert categories to approved operational destinations with deduplication and escalation controls.
Institutional ecosystem
Manage governed progression, capability posture, certificates and operational requests by legal entity.
Governed registry
Lifecycle queue
Credential governance
Issue, rotate and revoke scoped application credentials. Secret material is shown once and stored only in the governed secrets plane.
Use mTLS-bound OAuth for institutional partner access wherever available. API keys are intended for approved service integrations and operator bootstrap only.
| Credential | Owner | Environment | Scopes | Last used | Status |
|---|
Tamper-evident operations trail
Trace connection, security, compliance, partner and event activity through hash-linked operational evidence.