Approval required before every email 5 emails/day One follow-up after 7 daysSocial collection: research only
07 / SYSTEM
Settings & projects
Project scope, allowlisted access, and the rules that protect outbound work.
PROJECT CONTROL
Scope the workspace
Trend Seeker is the default project; additional project records come from the API.
Connected projectsAPI resource
ACCESS CONTROL
Allowlisted identity
Google OAuth entry and allowlist decisions stay at the auth boundary.
UnreportedIdentity not returned
UnreportedAllowlistNot reported
Guest bypassDisabled
OAuth providerGoogle
An allowlist denial returns to a dedicated state. The frontend contains no client secret and no insecure production bypass.
INTEGRATION
Runtime contract
The browser talks to one same-origin API base.
Frontend API base
/api/v1Local upstream
http://127.0.0.1:8080Cluster upstream
CRM_API_ORIGINRuntime
Rari 0.15.10 · React 19POLICY CONSTANTS
Workspace rules
These values should stay aligned with the Rust API enforcement layer.
5emails/day
7dfollow-up wait
1follow-up max
4social runs/day
90msocial cooldown
30dPro referral reward
REFERRAL ATTRIBUTION
Reward trace
Unique code and downstream events are shown only when returned by the live API.
Unique code—
Clicks—
Signups—
Purchases—
30-day Pro reward
Purchase attribution is the reward gate. Clicks and signups remain visible as separate events.