Skip to content
Gelhaus Solutions
Apps Services Security Contact
EN DE
Apps / GOpenCSR / GOpenCSR sign-in transition terms

GOpenCSR sign-in transition terms

What happens when GPlatform SSO takes over sign-in from GOpenCSR, what moves and what stays, the one further passkey enrolment, how the switch-over is announced, and what applies until you accept the changed documents.

Last updated 1 October 2026 Auf Deutsch lesen →

On this page

  1. What these terms cover
  2. What moves to GPlatform SSO
  3. What stays in GOpenCSR
  4. The same controller and the same identifiers
  5. Passkeys are enrolled once more
  6. How the switch-over is announced
  7. Accepting at your next sign-in
  8. If you have not accepted by the switch-over
  9. Closing your account
  10. Everything else

What these terms cover

GPlatform SSO is the sign-in service Gelhaus Solutions runs for its products. These terms set out what happens when it takes over sign-in for GOpenCDR, GOpenCNR and GOpenCSR from GOpenCSR. It is a move between our own sign-in services, which the general terms of service allow, made to bring our products under one sign-in. These terms govern that switch-over from its announcement until every account has either accepted the changed documents or been closed. They are part of the GOpenCSR terms.

What moves to GPlatform SSO

  • Accounts, with their email addresses, password hashes and display names.
  • Sessions: signing in, staying signed in and signing out happen on GPlatform SSO.
  • Passkeys, which are enrolled once more, as set out below.
  • Organisations.

Only what is needed to sign you in and to keep what you hold moves. From the switch-over, GOpenCDR, GOpenCNR and GOpenCSR sign you in through GPlatform SSO.

What stays in GOpenCSR

  • governance: councils, seats, elections, motions and votes;
  • the policy system;
  • abuse cases;
  • audiences;
  • the transparency log at csr.gplatform.org/tlog;
  • the API front door at csr.gplatform.org/api/{cdr,cnr,csr}/v1.

What you hold in GOpenCDR and GOpenCNR stays in the registry that holds it, and the switch-over does not touch it.

The same controller and the same identifiers

GPlatform SSO is run by Gelhaus Solutions, as GOpenCSR is. The controller does not change: your data moves from one of our services to another, on the same legal basis on which it is processed now, the performance of the contract for your account (Art. 6(1)(b) GDPR). The privacy notice changes for the switch-over. Its new version is published with the announcement, and the announcement says what changed in it. You are not asked to accept the privacy notice: it is there for you to read.

Identifiers do not change. Your account keeps its identifier, so audit records, entries in the transparency log, consent records, cases, seats and roles go on naming the same account, and the registries recognise you as before. Organisations keep their identifiers and handles.

Passkeys are enrolled once more

A passkey is bound to the address it was made for and answers nowhere else. A passkey made for csr.gplatform.org therefore cannot sign in to GPlatform SSO, and every passkey is enrolled once more, as the passkeys made for cdr.gplatform.org were when sign-in moved to GOpenCSR.

  • The announcement names the last day on which a passkey made for csr.gplatform.org is accepted. Until that day it keeps working, and signing in with it asks you to add a passkey for GPlatform SSO.
  • After that day it is refused. The account is then recovered through a one-time link to its verified email address, valid for 30 minutes, or with a recovery code; a new passkey is enrolled and the old one removed.
  • An account without a verified email address asks Tier 0.

Signatures already made with your passkeys or your automation keys, and their receipts in the transparency log, stay valid.

How the switch-over is announced

At least six weeks before the switch-over, we write to the address of every account, from csr@gplatform.org. The general terms let us move an account between our own sign-in services with 30 days' notice; because this move also changes documents, it is announced as new terms are, at least six weeks ahead. The notice gives:

  • the date of the switch-over;
  • what moves and what stays;
  • the last day on which a passkey made for csr.gplatform.org is accepted;
  • the documents that change, with links to their new versions, which are in the document archive from the day of the notice;
  • what changed in the privacy notice;
  • that you are asked to accept the changed documents at your next sign-in, and what applies if you have not accepted them by the switch-over.

Accepting at your next sign-in

From the day of the notice, your next sign-in asks you to accept the documents that change. Each is shown to you in full, with a link to its version in the document archive; the request does not list what changed. Your acceptance is recorded by version, as every acceptance is.

The changed documents apply to you only once you accept them: from the switch-over, or from your acceptance if that comes later. Until the switch-over, you use the services as before, whether or not you have accepted.

If you have not accepted by the switch-over

GOpenCDR, GOpenCNR and GOpenCSR are free of charge, so the general terms' rule for free services applies: if you have not accepted the changed documents by the switch-over, your account is restricted until you accept. You can still sign in, read, export your data, exercise your rights under data protection law, close the account and accept, and nothing else. For an export or a request under data protection law, write to contact@gplatform.org. Exporting your data and your rights under data protection law never depend on accepting.

The restriction does not itself end anything you hold: names stay registered and keep resolving, and allocations and routes stay in place. While it lasts, though, you cannot reconfirm them, so a yearly reconfirmation that falls due goes through grace and redemption as usual, as each registry's terms describe. Once you accept, you can reconfirm and change them again.

If you, or an organisation you act for, have a paid order with us, such as under GOpenCDR's enterprise terms or GOpenCNR's enterprise terms, your account is never restricted: you keep full use on the versions you accepted, and are asked again at each sign-in, until we end the paid contract at its next ordinary end date, as the general terms set out.

Closing your account

You may close your account at any time, free of charge, before or after the switch-over. If you do not want to accept the changed documents, you can use the time before the switch-over as before, for example to transfer what you hold where a registry allows transfers, and then close it. If the move makes access materially harder for you, the general terms also let you end a paid order free of charge within 30 days of the move.

A closed account is treated like any other closed account. Closing it ends what it holds as a person, as each registry's terms describe. Its email address and credentials are kept for 12 months after it ends and then erased, as the privacy notice sets out, its identifier stays in audit records and in the transparency log, and governance records stay public for good. You can have your data exported for 30 days after the contract ends, as the general terms set out, by writing to contact@gplatform.org.

Everything else

The switch-over is free of charge. Whatever these terms do not name stays as the GOpenCSR terms and the general terms of service set it out, including liability, which for what is given away is limited to intent and gross negligence (Section 521 BGB). These terms change as the general terms set out under "New versions of these terms", and every version is kept in the document archive.

Gelhaus Solutions

Self-hosted applications, and the platform that hosts them for the people who would rather not.

Site

  • Apps
  • Security
  • Writing
  • Contact
  • Sitemap

GHub

  • GAdvisory
  • GControl
  • GPlatform Control
  • GPlatform SSO
  • GPlatform Billing

Legal

  • Impressum
  • Privacy
  • Terms
  • Data processing
  • Withdrawal
  • Report content

Elsewhere

  • egelhaus@ennogelhaus.de
  • @egelhaus
  • @egelhaus
© 2026 Enno Gelhaus Built and shipped in Germany