Skip to content

Repository files navigation

okta-access-policy-drift-monitor

Board-readable drift monitor for Okta access policies, MFA gaps, stale exceptions, dormant users, privileged applications, risky sign-ins, and identity-risk remediation posture.

ci pages License: AGPL v3

Why this exists

Identity risk gets dangerous when access exceptions age quietly. Leaders need a simple answer:

  • Which Okta policy lanes have the highest drift?
  • Where are MFA gaps, stale exceptions, dormant users, and privileged apps compounding?
  • Which remediation route should move before the next audit, board review, or incident?

This repo turns synthetic Okta-style policy telemetry into a board-readable identity-risk register.

Local run

npm install
npm run verify
npm run demo

CLI

npx okta-access-policy-drift-monitor fixtures/okta-policy-sample.json --format markdown
npx okta-access-policy-drift-monitor fixtures/okta-policy-sample.json --format json

Data contract

Each lane tracks MFA coverage, stale exceptions, dormant users, risky sign-ins, privileged app counts, group sprawl, evidence completeness, and business criticality.

Kinetic Gain fit

This strengthens the identity/security lane with an Okta-specific signal: access policy drift translated into board-ready remediation sequencing.

About

Board-readable Okta access policy drift monitor for MFA gaps, stale exceptions, privileged apps, and identity-risk remediation posture.

Topics

Resources

Security policy

Stars

0 stars

Watchers

0 watching

Forks

Releases

Packages

Used by

Contributors

Languages