OrbisID is a Privileged Access Management (PAM) detection and governance platform for enterprise IT and security teams. It scans your infrastructure — Active Directory, Windows and Linux servers, cloud platforms, databases, PAM vaults, SaaS applications, and network devices — to automatically discover privileged accounts, entitlements, and the inheritance chains behind them, across 46 supported system types.
Every discovered account is categorised as Human or Non-Human, further classified into a Non-Human Identity subtype (API key, service account, cloud role, managed identity, and more), and linked to a real identity wherever possible. Accounts left privileged, unowned, unlinked, or outside your existing PAM tool are surfaced automatically, turning what is usually a manual, spreadsheet-driven audit into a continuous, repeatable process.
Where point-in-time Active Directory assessment tools check configuration once, and attack-path graphing tools map routes for offensive testing, OrbisID is built for ongoing governance: it reconciles discovered accounts against your existing PAM vault, tracks a set of Key Risk Indicators over time with trend reporting, runs periodic owner attestation workflows, and produces compliance gap analysis mapped to NIST 800-53, ISO 27001, SOX, HIPAA, Cyber Essentials, and other frameworks, with a board-ready PDF export.
An interactive Access Graph visualises the full identity-to-account-to-entitlement-to-system relationship model, including nested and inherited privilege paths, so teams can answer "who can ultimately reach this system" without manually tracing group memberships.
OrbisID is self-hosted: it runs entirely inside your own infrastructure via Docker Compose (or as a pre-built cloud marketplace image), and no scan data leaves your network unless you opt in to the local AI assistant, which runs against a self-hosted Ollama instance rather than any external provider. A free Community edition is fully usable for smaller estates; Pro and Enterprise editions add unlimited scale, automatic identity linking, PAM gap analysis, single sign-on, and more.