Sign in
Pharos has no accounts of its own. Sign-in is Wazuh ID, the identity service shared by every Wazuh Labs service: one account, one login, valid across the whole ecosystem. The console at pharos.wazuh.com hands the browser to Wazuh ID and receives it back signed in. There is no separate Pharos password to create or to forget.
One organisation, one tenant
An organisation is the group of members a company shares in Wazuh ID. A tenant is that organisation's private slice of Pharos: its managers, its signals, its settings and its bill. Each organisation maps to exactly one tenant, and every member lands in the same tenant, whether they sign in at the console or arrive through the Hub.
The Hub at hub.wazuh.com is the front door of the Labs ecosystem, where an organisation activates services and manages its account. Activating Pharos there links the organisation to the same tenant that signing in directly would reach.
The first sign-in
The tenant is created at the first sign-in and never before. The first member into a tenant becomes its admin. Everyone after that joins the same tenant as a plain user, automatically.
Activation from the Hub follows the same rule. Activating Pharos for a person who has never signed in creates nothing. The Hub asks that they sign in once with their Wazuh account first, then activate again.