All features
Everything you need
to reduce identity exposure
Saporo combines deep identity analysis with practical remediation and automation,
so teams spend less time investigating exposures and more time eliminating them.
Explore Saporo's capabilities

Graph engine & analysis
Build a unified identity graph that reveals attack opportunities and attacker movement.
Exposure management
Discover, prioritize, validate, and continuously reduce identity exposure.
Guided remediation
Resolve the highest-impact exposures with guided and automated workflows.
Automation & integrations
Orchestrate remediation across identity, cloud, ITSM, and security tools with 1,900+ integrations.
Dashboards & reporting
Measure exposure, track security improvements, and demonstrate business outcomes.
Enterprise platform
Deploy anywhere, scale to millions of identities, and support hybrid enterprise environments.
Graph engine & analysis
At the core of Saporo is an enterprise-scale graph engine that continuously connects identities, permissions, relationships, activity, and misconfigurations into a unified model of attack opportunities.

See your identity environment as one connected graph
Saporo unifies fragmented identity data into a continuously updated graph of identities, permissions, relationships, activity, and misconfigurations. See how your environment is connected, uncover attack opportunities, and identify where remediation will have the greatest impact.
Hybrid identity graph
Continuously connect identities and relationships across Active Directory, ADCS, SMB Shares, local accounts, Entra ID, Azure, Microsoft 365, Google Workspace, GCP, AWS, and more in one unified model.
Attack opportunity analysis
Reveal how identities, permissions, relationships, activity, and misconfigurations combine into real attack opportunities, exposing attacker movement before it becomes an attack.
Hybrid identity coverage
Saporo provides comprehensive coverage across the identity systems that matter most. By connecting on-prem, cloud, SaaS, and companion identity platforms into a single graph, it reveals attack opportunities that span traditional security boundaries.

See identity exposure across hybrid environment
Identity spans legacy Active Directory, cloud directories, SaaS platforms, and cloud infrastructure. Saporo brings these sources into one connected view, helping uncover relationships, misconfigurations, and attack opportunities that cross technology silos.
Azure, Entra ID and M365
Analyze Entra ID, Azure, and Microsoft 365 identities, roles, applications, permissions, and conditional access policies. Detect excessive privileges, risky app consents, legacy authentication, workload identities, and tenant-wide attack opportunities while continuously assessing Microsoft security best practices.
Google Workspace and GCP
Unify Google Workspace and Google Cloud into a single identity graph that connects users, groups, admin roles, IAM permissions, service accounts, devices, storage, and cloud resources. Reveal cross-domain attack opportunities, privilege escalation paths, and overprivileged service accounts that span both control planes, while continuously assessing Google security best practices.
Misconfiguration & risk
Continuously discover identity exposures across hybrid environments. From misconfigurations and excessive permissions to risky identities and policy violations, Saporo reveals the weaknesses attackers can exploit.

From noise to clear priorities
Modern environments generate thousands of identity exposures. Saporo analyzes each one in context, connecting identities, permissions, relationships, and policies to prioritize the weaknesses that create real attack opportunities.
Attack path chokepoints
Stop attackers before they reach critical assets by identifying the identities, permissions, and relationships that sit at the center of millions of attack opportunities.

One fix, massive impact
Attackers rarely rely on a single weakness. They combine identities, permissions, relationships, and misconfigurations to reach critical assets. Saporo identifies the chokepoints shared across these attack opportunities, revealing where a single remediation can eliminate entire clusters of risk.
Automation & integrations
Turn identity exposure into action with guided workflows, human approval, execution tracking, and 1,900+ integrations across security, IT, cloud, and collaboration tools.

From insight to action
Turn identity exposure into continuous action with guided workflows, human approval, and 1,900+ integrations that reduce manual effort while keeping environments hardened as they evolve.
Dashboards & monitoring
Continuously measure identity exposure, monitor posture changes, and demonstrate security improvements over time with dashboards, resistance scores, and trend analysis.

Measure, monitor, and improve
Identity exposure is constantly evolving. Saporo continuously tracks posture changes, attack opportunities, resistance scores, remediation progress, and operational metrics through dashboards that make security improvements easy to measure and communicate.
Scale & performance
Saporo is built for enterprise scale. Analyze millions of identities, permissions, relationships, and attack opportunities across the largest hybrid environments without sacrificing speed, accuracy, or deployment flexibility.

High performance at enterprise scale
Modern identity environments span millions of identities, permissions, relationships, and cloud resources. Saporo's enterprise-scale graph engine efficiently ingests, models, and analyzes this data in memory, delivering fast, interactive analysis whether deployed on-premises or in the cloud.
Advanced exploration
Go beyond predefined analysis with graph exploration, custom queries, saved searches, and advanced reporting tailored to your environment.

Explore, query, and report
Every environment is different. Saporo gives analysts the flexibility to explore identity data, build custom graph queries, investigate hypotheses, search collected logs, and create tailored reports and dashboards.
Enterprise ready
Saporo is built for enterprise environments, with the security, governance, deployment flexibility, and access controls organizations expect from mission-critical security platforms.

Security and governance by design
Enterprise security platforms must meet the same standards they help enforce. Saporo includes enterprise-grade security, governance, authentication, and auditing capabilities that enable organizations to deploy with confidence.
Audit trails
Maintain a complete audit trail of user activity, configuration changes, remediation actions, and administrative operations to support governance and compliance.
Scoped Access
Limit visibility by domain, tenant, organization, or scope, enabling delegated administration while protecting sensitive data and preserving graph analysis.
AI & assisted resolution
Saporo goes beyond analysis. It provides clear, prescriptive recommendations — enhanced with AI assistance — so teams can remediate with confidence.

From findings to fixes
Security teams don’t just need to know what’s wrong, they need to know how to fix it. Saporo generates tailored recommendations for every issue, enriched with AI explanations that clarify risks and propose safe remediation steps.
Contextual recommendations
Every finding is paired with a prescriptive fix tailored to your specific AD, Entra ID, or cloud environment. A script or cmd to fix the issue is provided when possible.
AI-powered guidance
LLM assistance (cloud or on-prem) explains complex risks in plain language and suggests remediation steps aligned to best practices.
See Saporo in Action
Reduce identity exposure before it becomes an attack
See how Saporo helps organizations discover attack opportunities, prioritize what matters most, and mobilize remediation before exposure becomes an incident.




