Tenant isolation is a product concern
Isolation is not delegated to a landing page. The product model is built around tenant-scoped data, entitlements, retention, and operator boundaries.
BrainCaps is the business product surface for structured memory, controlled ingestion, provenance, and customer-facing clarity. PortalHQ remains the shared SaaS shell. BrainCaps App remains the customer workspace.
Explain where the product starts and where the shared shell stops.
Make creation, ingestion, evidence, and trust paths legible before sign-in.
Public host: https://braincaps.io
Customer app: https://app.braincaps.io
Shared shell: PortalHQ
BrainCaps is not a generic AI shell, not a portal clone, and not a chat façade for unstructured storage. It is a product surface for living memory, controlled ingestion, and evidence-backed retrieval.
Isolation is not delegated to a landing page. The product model is built around tenant-scoped data, entitlements, retention, and operator boundaries.
The customer workspace stays separate from the operator console. BrainCaps360 remains private and out of the public route map.
Access and billing stay transversal. The BrainCaps business experience lives in the product app where memory logic and product context are actually applied.
The point of the stack is not aesthetics. It prevents product drift, mixed boundaries, and false assumptions about where billing, identity, customer data, and operator power should live.
The public host explains the product, the trust posture, and the path into the SaaS journey. It does not host account logic.
PortalHQ handles identity, organizations, billing, access, and the shared launch layer across products.
BrainCaps App takes over after launch and shows the product experience: memory, ingestion status, usage, and settings.
BrainCaps API, orchestration, parsing, storage, and private operator tooling stay behind the product boundary.
The customer does not buy a page. They buy a controlled memory perimeter with ingestion rules, retrieval logic, and visible operating guardrails.
A customer workspace resolves to a product-scoped BrainCaps perimeter, not to a generic assistant session.
Documents, connectors, and evidence enter through explicit ingestion paths with provenance and retention intent.
The product builds structured memory, links, decisions, and evidence layers instead of flattening everything into a chat history.
Usage, entitlements, health, and operator boundaries remain visible so the customer sees product state without reading infra logs.
The public site should make the operating model easier to understand, not smuggle shell logic or private administration back into the product.
The next useful layer is not more shell chrome. It is a sharper explanation of ingestion modalities, customer-specific BrainCaps creation, and the trust model customers need before they put sensitive material into the system.