Permission decay analysis for entitlement exports - unused permissions, narrowable roles, dormant principals and ungranted use across an explicit observation window.
-
Updated
Sep 26, 2026 - Python
Permission decay analysis for entitlement exports - unused permissions, narrowable roles, dormant principals and ungranted use across an explicit observation window.
Find privilege that was granted and never used: unused permissions, narrowable roles, dormant principals, and ungranted use.
Find privilege that was granted and never used: entitlement inventory, access-log windows, and decay verdicts.
Open-source role mining and access review for Microsoft Entra ID and any system you can export to CSV. See who has access to what, find what to clean up, export review-ready Excel. Self-hosted, MIT.
manifest-identity is an application for reviewing who has access to what across cloud accounts and directories. It keeps a record, written by a named person, of what access each identity may have, imports what the systems report, and puts every difference in front of the person responsible. It never changes anything in the systems it reads.
Read-only Microsoft Entra ID (Azure AD) access review PowerShell scanner + Python report that scores MFA gaps, privileged roles, legacy auth, Conditional Access and PIM risks into an A–F posture report for ISO 27001 / NIS2 audits.
Scans a GitHub org for security advisories and stale access, scores each collaborator's real contribution per repo, and suggests (never performs) access removals. Static HTML dashboard, idempotent, rate-limit aware.
270+ compliance automation tools: GRC platforms, access review, vendor risk, CSPM, endpoint, trust centers. SOC 2, ISO 27001, HIPAA, PCI DSS, GDPR, NIST CSF
PowerShell-based IAM access review demonstrating identity governance, NIST control testing, remediation tracking, and Joiner-Mover-Leaver processes.
⭐️ Microsoft Access Database 2026 Version | Unrestricted Spreadsheet Workspace | Instant One Click | No Ads | Tables Queries Forms Reports | Office Compatible ⭐
Serverless AWS access recertification engine: discover resources by owner tag, collect keep/trim/revoke decisions, and actually enforce them with scoped changes, hash-chained evidence, and rollback.
Identity Governance & Access Review lab demonstrating access certification, least-privilege enforcement, access remediation, audit evidence collection, and Active Directory security group management.
Manage identity and access with RBAC, ABAC, OAuth2/OIDC, approval flows, and audit logs for secure enterprise control
React + TypeScript control-plane for access posture, policy exceptions, remediation tracking, and executive identity governance visibility.
Offline synthetic IAM review lab comparing Entra-style identity data with HR records using deterministic governance rules and Markdown reports.
Offline Microsoft Entra access review auditor for stale users, guests, groups, and roles
Identity and Access Management mini-project covering least privilege, stale accounts, risky access and access review reporting.
Demonstrates an Identity & Access Management (IAM) governance workflow including access review procedures, evidence collection, findings, remediation tracking, and password policy hardening using a Windows lab environment.
Review who can do what in an enterprise system: segregation of duties conflicts, leavers who keep access, unknown accounts, privileged users, unused and redundant roles. From exported files, no dependencies.
Access review for Citrix machine catalogs: machines, software, and who can reach each catalog through which groups, with deterministic recommendations. Read-only, local.
To associate your repository with the access-review topic, visit your repo's landing page and select "manage topics."