Know exactly who has admin access — across your whole business.
OrbisID™ discovers every privileged account across your systems, flags the ones that shouldn't be there, and gives you the evidence to prove it's under control. Free to start. Deploys in an afternoon.
Why OrbisID
Everything you need to get privileged access under control
Discovery, risk, compliance and threat detection in one self-hosted tool — working alongside whatever you already run, or standing on its own if you have nothing yet. No consultants, no enterprise price tag.
Prove it
Answer your auditor — and your insurer — in minutes
Run a gap analysis across ten frameworks, delegate questions to the right people, and export a PDF you can hand straight to an auditor or attach to a cyber-insurance renewal. The evidence is already there. Covering NIST 800-53, NIST 800-63, ISO 27001, ISO 29146, ISO 24760, SOX, GxP, HIPAA, and Cyber Essentials.
Ask, don't dig
A straight answer, not a query you have to write yourself
Ask OrbisID's inbuilt AI what account an account can reach, who owns a server, or how someone's connected to Domain Admins — plain English, from any page. It suggests identity and PAM links with confidence score and the reason why.
How we help
One tool, the whole privileged-access picture
Discover across 45+ systems
Scan directories, cloud, databases, network devices and business apps.
Track your biggest risks
29 risk indicators show your worst exposures — and whether they're improving.
Compliance made evidence-able
Gap analysis for ISO 27001, NIST, SOX and six more frameworks.
Spot misuse
Behavioural and machine-learning detection flags privileged-account abuse.
Works with your PAM
Reconcile against CyberArk, BeyondTrust, Delinea and more.
See the blast radius
The access graph shows what any identity, account or system can reach.
“
I built OrbisID because every IT team I met had the same blind spot — nobody could say for certain who had admin access, or prove it to an auditor. The enterprise tools that tried to answer that were overly complex and still missed things. This is the tool I wanted them to have.
Craig Parkin
Founder, OrbisID
Connects to your stack
Works with the tools you already run
45+ connectors spanning directories and IAM, cloud, operating systems, databases, PAM vaults, business apps and network devices. Scan agents poll outbound-only, so there are no inbound firewall rules to open.
Get answers
Frequently Asked Questions
Yes — Community Edition is free forever. It covers ten target systems and a single user, with real discovery, reconciliation and your first compliance answer.
No. OrbisID works alongside CyberArk, BeyondTrust, Delinea and others — and it’s just as useful if you don’t have a PAM tool at all.
Self-hosted, as a single Docker image. Your data never leaves your environment, and there’s an offline bundle for air-gapped networks.
An afternoon. Pull the image, deploy it, point it at a system and run your first scan.
No inbound rules. Scan agents poll outbound-only.
Apply a licence key in the UI — no re-pull, no redeploy. Pro is $4,999/year per deployment; Enterprise is tailored.
Community users report bugs on GitHub (coming soon). Pro and Enterprise customers get email support, with priority handling for Enterprise.
View Pricing →
Simple, transparent, and free to start.
Why we built OrbisID →
The blind spot we set out to fix.