Website and membership
Product information, pricing, account entry and bounded membership setup.
Merentra is built so a convenient interface does not require one system, one organisation or one AI tool to see everything.
Separation reduces the amount of private information any one service needs to hold.
Product information, pricing, account entry and bounded membership setup.
Work records, manual Professional Record items, Practice periods, Training programmes, rotations, capability maps, assessments, logbook entries, milestones, reviews, governed feedback, encrypted evidence, revisions, reminders, imports, connections and planning data.
A minimal, encrypted subset selected for the chosen disclosure mode.
Coarse service health and release information—not the member’s record.
A connection should be narrow, explainable and easy to remove.
PKCE, one-time state, encrypted credentials, token rotation and revocation.
HTTPS, port restrictions, host allowlists, public-address checks and bounded responses.
Merentra does not ask for an employer password or automate an authenticated rota page.
New source data becomes a proposal before it becomes part of the timetable.
Stale edits are rejected and rollback cannot erase a later member correction.
Stop checks temporarily or remove the connection and its secret material.
Merentra can help explain relevance without disguising an inference as a published fact or an eligibility decision.
Publisher, URL, retrieval date, update state and uncertainty remain visible.
Interests, delivery, geography and mobility remain private and editable.
Matched, unmatched and uncertain signals appear together—never as proof of eligibility.
Drafts cannot apply, purchase, message, share or commit on the member’s behalf.
Mara is designed to help structure professional information without becoming an invisible authority over it.
Read only the bounded context needed for the current task.
Produce a structured change rather than vague prose.
Make the current and proposed values visible.
The member edits, rejects or accepts before application.
Reverse safely when no later edit would be lost.
The public campaign credential can start a response session, but it cannot submit feedback itself.
The long entry token and short code are encrypted, indexed by one-way hashes and revocable by the member.
Each scan starts a separate short-lived session. Submitted or revoked sessions cannot be reused.
The member sees totals—not a list of QR respondents, individual sessions or individual rating sets.
The campaign address is encoded in the browser; it is not sent to an external QR image service.
Each paired device can have its own disclosure and lock-screen preferences.
Show only that work starts at a particular time.
Show limited activity detail while hiding employer and location.
Show selected context only after explicit member opt-in.
Members can inspect sessions and devices, revoke access, export private application data and erase the Merentra application profile.
Review and revoke other active sessions.
Revoke paired devices and clear their active tokens and snapshots.
Download CV, portfolio, timeline, Practice, Training, logbook, progress, feedback and encrypted-evidence outputs, or the wider privacy export.
Remove the private application record through a controlled process.
Approved organisations can manage seats, programmes, cohorts, placements, consent requests and member-accepted credentials. The professional’s private Work, Record, Practice, Training, Opportunities and feedback remain member-owned.
Every sensitive request states the scope, reason and expiry before a member decides.
Merentra combines everyday utility with explicit source, authority and privacy controls.
Merentra now uses one server-enforced gate for free registration, paid access and launch-stage promotion. Existing members keep access when the cohort is paused; new accounts reopen only after the live-acceptance run, named ownership and capacity controls allow it.