Sloth-ninja clears a key confidentiality hurdle for Clio access

The fork's first pilot check suggests lawyers see only the matters their own Clio account permits.

securityintegration

Sloth-ninja has recorded a successful reconnect and permissions check for one pilot lawyer after an earlier sign-in redirect problem was fixed. Her visible matter count differed from the owner's in the expected way, supporting the central safeguard: a connected user should not inherit someone else's client matter list.

Clio is a legal practice management platform, and this check matters because its matter data can be highly sensitive. The result is not a blanket sign-off yet: the intake-notes area remains unverified, and the office's first two pilot users still need to be satisfied before the remaining lawyers are brought on.

So what Firms considering connected legal tools should care because this is the kind of small, real-world access check that determines whether a pilot can safely expand.

View this fork on GitHub →

Spotted something wrong? Or know the PR text has fresher detail than the writeup above?

Commits in this thread

2 commits from Sloth-ninja/JessicaOSS, oldest first. Source extracted verbatim from the harvested git log.

SHA Subject Author Date
14d45833 Record pilot Clio per-user permissions verification (04/08) sloth-ninja 2026-08-04 ↗ GitHub
commit body
Lindsay's reconnect succeeded after the API_PUBLIC_URL fix and her
matters-visible count differs from the owner's as expected - the
owner-designated per-user confidentiality check for Clio v1 passes.
Docs-only: BUILD_LOG entry, HANDOVER §0.1 resolved, CLAUDE.md status.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
6aae01fa Address review: separator, scoping-claim precision, count/chronology fixes sloth-ninja 2026-08-04 ↗ GitHub
commit body
Review findings on #70: BUILD_LOG entry separator; soften the per-user
scoping claim to what was observed (count-level check only); 604 tests;
status-date bump; verification sentence moved after the incident it
depends on and scoped to the two provisioned accounts; HANDOVER #69;
UK 'solicitors'.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>

Capture this thread into my fork

Download a single Markdown prompt that tells Claude how to port every commit above into your working tree — adapting paths and structure to match your repo. Run it via claude -p < capture-thread-1067.md from inside the repo you want the changes in.

⬇ Download capture-thread-1067.md