Welcome to AILedger

Your first day, in four steps. Takes about 15 minutes.
Sign in
Just finished your invite link? Step 1 is done. Carry on with step 2.
  1. Open your invite link and set up your sign-in

    Jake or Stanley sends you a private link (Signal, iMessage or in person). It works once and lasts 72 hours. Open it on the phone or laptop you use most, then, on that page:

    1. Register a passkey. Your device asks for Face ID, Touch ID or your PIN. This is how you sign in every day: no password, no codes.
    2. Set up an authenticator. Scan the QR code with any authenticator app (iPhone Passwords, Google Authenticator, 1Password, Authy) and type the 6-digit code.
    3. Set a password (12+ characters).

    When it says Account updated, tap « Back to Application. You land back on this page.

    The password plus the authenticator code are your backup for when your passkey isn't to hand. Keep both somewhere safe. You reach them from the sign-in page with Try another way.

  2. Join the mesh with NetBird

    Most company tools (code, vault, files, docs) are only reachable over our private network. NetBird puts your device on it.

    1. Install NetBird:
      • iPhone / iPad: App Store, search NetBird (publisher NetBird GmbH).
      • Mac: download from netbird.io/download, or brew install --cask netbird-ui.
      • Linux: curl -fsSL https://pkgs.netbird.io/install.sh | sh
    2. Change Server to https://mesh.ailedger.dev.
      • iPhone / iPad: menu (top left) → Change Server.
      • Mac: menu-bar icon → Settings → Management URL.
      • Linux: sudo netbird up --management-url https://mesh.ailedger.dev
    3. Connect and sign in with SSO: the AILedger sign-in page opens, use your passkey. Allow the VPN profile if asked.
    4. Check: vault.ailedger.dev opens.
  3. Set up Bitwarden, our password vault

    No separate invite: your first sign-in creates your vault. Keep NetBird connected.

    1. Install the Bitwarden app and the browser extension from bitwarden.com/download.
    2. On the login screen, set the server to Self-hosted and enter https://vault.ailedger.dev.
    3. Choose Enterprise single sign-on and enter the identifier ailedger. Sign in with your passkey.
    4. Set your master password. It encrypts your vault and nobody, not even an admin, can read it. Use a long passphrase you can remember. You type it once per new device.
    5. Turn on biometric unlock so you rarely type it:
      • Desktop app: Settings → Security → Unlock with biometrics.
      • Browser extension: Settings → Account security → Unlock with biometrics (needs the desktop app running with browser integration on).
      • Phone: Settings → Account security → Unlock with Face ID.
  4. You're in

    Open the portal. It shows every tool you have access to, with a live status dot for each.

    Open the portal

Something not working?

My invite link says it expired or was already used

Links work once and last 72 hours. Ask Jake or Stanley for a new one. It only asks for whatever you haven't set up yet.

I lost my passkey (new phone, wiped laptop)

On the sign-in page choose Try another way, then use your password plus authenticator code. Once you're in, open Identity in the portal and register a new passkey (NetBird must be connected).

Lost the passkey and the backup? Ask an admin. They will confirm it's you by phone, then send a fresh link.

Phone or laptop: where should the passkey live?

Register two: one on your phone and one on your laptop (or a security key). iPhone passkeys sync to your Mac through iCloud Keychain. On a computer without one, choose Use a phone or tablet at sign-in and scan the QR code with your phone.

NetBird says "user does not belong to any of the allowed groups"

Your account isn't on the mesh list yet. Ask an admin to add you, then press Connect again.

Company sites won't load (vault, git, files, docs)

They only work while NetBird is Connected. Open the app and toggle it on.

Bitwarden says "SSO sign-in is required"

Use Enterprise single sign-on with the identifier ailedger instead of email + master password. Make sure the server is https://vault.ailedger.dev.

I forgot my Bitwarden master password

Tell an admin. An owner can reset it through account recovery; nobody can read the old vault without it.