Get authentication configuration
Authorizations
App identifier (App.id, sent as the x-app-id header)
Response
Authentication configuration retrieved
OPEN, INVITE_ONLY, CLOSED Whether the prebuilt @kerne/react components render "Powered by Kerne". Resolved from the owner's platform_kerne_branding entitlement - true when unconfigured.
CSS color value the tenant set for the prebuilt components and hosted portal.
Where to send an unauthenticated user to actually reach the hosted portal (apps/portal). Null when no portal is deployed for this environment.
Where apps/portal hands the session back once auth/billing is done - portal_redirect_url if set, else app_url.
Access token TTL in seconds (null = default: 3600s / 1h)
Refresh token TTL in seconds (null = default: 604800s / 7d)
Overview tiles the tenant selected, as BillingStatsDto keys. Empty = never customised, so the dashboard applies its own default set. Filtered server-side against the supported keys.
What the server will accept as a password for this tenant. Public so the prebuilt components can state the rules in the form instead of surfacing them through a rejected submit.

