Zluri
Zluri ships canvas workflows and a Segregation of Duties engine, moving from SaaS management into full IGA territory.
◆Recent moves
- 5d ago
Workflows v2 - Canvas-based UI
⚡ SPARKZluri replaces its workflow builder with a visual canvas: every step is a node, conditional logic appears as named branches, and variables flow dynamically between any action. Test-before-publish, drag-and-drop reordering, and step-level run inspection (inputs, outputs, retry) make complex playbooks auditable and debuggable in a way a list-based builder cannot. This is the execution layer that turns Zluri's identity governance data into enforceable automation.
View source ↗ - 7d ago
Allow Admins to cancel Access Requests
Admins can now cancel pending access requests directly, with a reason field, without requiring the requester to withdraw. Cancelled and Withdrawn become distinct statuses with separate audit trails. Fills an operational gap that forced admins to contact requesters just to clean up stale or mistaken requests.
View source ↗ - 7d ago
Segregation of Duties (SODs)
⚡ SPARKZluri's SoD module adds a full policy engine: Set A/Set B conflict pair definitions with risk levels, ongoing violation detection, configurable remediation (alert, manual review, or automated access removal via Playbooks), and exemptions with mandatory expiry dates. This is a new compliance capability category, not an extension of existing features — it addresses audit requirements that previously required dedicated IGA tools.
View source ↗ - 17d ago
Managing Activity and Status for App Users through a Source
Activity-based user discovery gains configurable default status (active/inactive) and an inactivity threshold (days of no activity before auto-flip to inactive), configurable at org and app levels. Addresses a real data quality problem: users who went quiet were still counted as active, inflating adoption metrics and optimization counts.
View source ↗ - 17d ago
Manage Instances for your Applications and Accounts for your Identities
Application instances (e.g., Azure AD-US, Azure AD-EU) and individual accounts become first-class entities with their own ownership, status, sources, and detail pages. Accounts are now identified by their source-unique identifier rather than email, surfacing username-only identities (GitHub) and multi-account-same-email patterns (Salesforce). Explicitly lays the groundwork for NHI support as the follow-on release.
View source ↗ - 17d ago
Source Prioritization for Application User and Account Status
Source prioritization replaces single-source-per-app status resolution with configurable ranked groups: active in any source within a group wins, fallback proceeds to the next group if absent, org-level default with per-app overrides. Solves the fallback-when-trusted-source-is-silent problem that caused users to appear inactive when the direct integration had gaps but SSO showed activity.
View source ↗