Off the Bit
Tools: Permit.io
Category: Security and secrets
Site: permit.io
Permit.io
Authorization as a service with policy as code, covering role, attribute and relationship models.
Permissions as a policy file, not scattered checks.
What it is sold for
Managing fine-grained permissions across services.
Same shelf
The rest of security and secrets, alphabetically. Sharing a category is a filing decision, not a relationship.
- Fine-grained authorization as a service, so permission checks stop being scattered if-statements.
- Hosted identity: login, federation, multi-factor and the standards work nobody wants to implement twice.
- Amazon's managed identity for consumer applications, priced and scaled for very large user pools.
- Static analysis for security and privacy risk, focused on where sensitive data flows. Acquired by Cycode.
- The open-source scanner behind Bearer. Finds and ranks security and privacy risk in source, and still runs on its own.
- Open-source SAML and OIDC single sign-on, so enterprise login is not a rewrite. The address now serves Ory.
- Enterprise application security, combining several scan types and consolidating findings into one risk view.
- Authentication with the interface components included, built for React and Next.js first.
ImranTools[Permit.io]