Feature map
Findings
Top-level sidebar item. Security posture checks across your apps, accounts, OAuth grants, and extensions — with risk levels and guided remediation.
Shadow IT
Top-level sidebar item. Apps discovered via email, browser, or SSO that aren’t in your sanctioned catalog. Approve, deny, or replace.
OAuth Grants
Assets → Integrations → OAuth Grants. Full inventory of every third-party OAuth connection, risk-scored. Also includes Risk Score and MCP Connections sub-pages.
Security → Browser
Security signals from the browser extension: AI usage, password signals, file uploads, shared accounts. Five tabs.
Playbooks
Workflows → Playbooks. Multi-step operational workflows for offboarding, access reviews, and recurring governance processes.
Pulses
Workflows → Pulses. Async employee outreach via Slack, Teams, or email to verify app usage. History, Automation, Templates, Audit Log tabs.
Rules
Workflows → Rules. Event-based automation — triggers notifications, creates findings, or assigns resources when conditions match.
Access Requests
Top-level Requests item. Structured employee request flow with approver review and full audit trail.
Identities
The Identities section gives you a live directory view from your connected IdPs:Users
/identities/users — all directory users with status, department, MFA, and extension enrollmentGroups
/identities/groups — directory groups and memberships from your IdPService Accounts
/identities/service-accounts — non-human identities in your environmentRoles and permissions
Full permission matrix
See exactly what each role can do across every feature