Security

NeoAgenda protects sessions with HTTP-only cookies and separates user and admin access.

Authentication

Passwords are hashed and sessions are stored server-side with expiration.

  • scrypt hash
  • HTTP-only cookies
  • Persisted sessions

Access control

Private routes require a session and the admin console requires the ADMIN role.

  • Protected /dashboard
  • Protected /contacts
  • /admin reserved for admins

Ready to schedule with less friction?

Create your NeoAgenda workspace, publish your services, and share booking links.