Learn and master B5 Secure.
Articles, tutorials, and a complete library reference for building Never Trust .NET web apps and APIs — available as a library and as installable source packages you own.
Introduction
Goals and principles, the two forms B5 Secure ships in, and supported platforms.
Getting started
Build a multi-tenant CRM on .NET 10 — ASP.NET Core (REST + GraphQL), MVC, or co-hosted ServiceStack v10.
Key concepts
Permissions, permits, identity tokens, API keys, user sessions and the security context.
The security pipeline
The multi-stage checks every request passes — all failing closed by default.
Authentication schemes
HMAC, Service-HMAC, AuthCookie, Service-Key — plus IP firewall and origin restriction.
Activity-based, data-aware authorization (ADA)
Authorize the action and the record, by default, with little code.
Suspension
User- and entity-level suspension enforced inside the pipeline.
ServiceStack support
Native B5 Secure integration for ServiceStack services.
Using the B5 Secure tools
Install source packages, manage license keys, and troubleshoot.
Project templates
dotnet new templates for MVC, Web API and ServiceStack.
Source packages
Compare Essential, Starter and Premium source packages.
Try a different term or clear the filter.
Talk to a human.
Get architecture guidance, Test Mode access, integration review, or help choosing the right B5 identity and authorization pattern.