Why identity is its own environment in the score
Identity findings — stale privileged access, weak authentication settings, over-broad service permissions — carry real weight in the overall Security Score precisely because they are evaluated with the same evidence standard as cloud and SaaS findings: read directly from the connected account.

What gets evaluated
Access reviews focus on the entitlement hygiene that most commonly leads to compromise: standing privileged access, authentication configuration and account lifecycle controls, evaluated the same way for every connected provider.
- Privileged and standing access across connected accounts
- Authentication configuration hygiene
- Account lifecycle and dormant-access findings