Identity & Access
Two-tier identity — repository tier (GRAC content team) and organization tier (your users), end-to-end isolated. Authentication, authorization, audit logs, data fully isolated across tiers and across tenants. Your data is never visible to anyone outside your organization.
SSO with Azure AD, Okta, Google Workspace, any SAML or OAuth provider; just-in-time provisioning; group-to-role mapping for automatic permissions
External user portal — scoped, time-bound access for vendors, third parties, external auditors; limited-scope portals; activity logging for all external user actions