tokens&
For enterprises
tokens&

Find tools, check provider offers, save a build plan, and share your work when you’re ready.

For buildersFor enterprises

For builders

  • Startup credits and perks
  • Agent Skills
  • Publish a project

For enterprises

  • Start free company workspace
  • Submit a tool, product, or perk

Community

  • Community
  • Newsletter
  • Events
Xin

© 2026 tokensand, LLC. All rights reserved.

  • Terms
  • Privacy
  • Security
  • Data Processing
  • Status
  1. Hackathon
  2. Project gallery
  3. Secure People Data
Jun Jiangabout 2 hours agoContributorJudging locked: Event build

Secure People Data

A workforce analytics prototype for employees and managers that uses ClickHouse, enforces role-based access, blocks unauthorized changes and exports, and logs allowed and denied actions.

Review the project

Start with the source code, then open the demo or video if available.

View GitHub repository
Visit project websiteWatch demo videoProject gallery
Demo video
Watch demo video
Project description
Employee data requires precise permissions: viewing a record should not automatically grant permission to edit or share it. Secure People Analytics is a working Python/Streamlit prototype using synthetic data for 20 employees. ClickHouse stores 60 monthly workforce analytics records and powers PTO and overtime dashboards. Backend queries restrict employees to their own records and managers to their direct reports. Employees can update their own phone number and address, while system-maintained PTO remains protected. Manager workflows support assigned leave approvals and denials without granting direct record-editing or export rights. Contact changes, leave decisions, and audit logs remain local. The security demo exercises attempts to access another employee's PTO, modify system-maintained PTO, and export restricted employee data. Backend authorization rejects prohibited actions, and the audit trail records allowed and denied attempts. Built-in chart and table download controls are removed. Built with Claude Code in Cursor. This prototype uses simulated identities and application-level authorization; real authentication and database-level hardening are future work.
Project links
  • GitHub repository
  • Project website
  • Demo video
Tools used
  • ClickHouse logoClickHouse
Tools used
  • ClickHouse logoClickHouse