Single sign-on, role-based access control, SIEM streaming, and a deployment model your infra team can sign off on — the controls a security questionnaire actually asks for.
Nobody signs in with a shared password, and every role's permissions are enforced on every request — not just hidden in the UI for roles that shouldn't see them.
Single sign-on (OIDC)
Okta, Azure AD, Google Workspace, or any OIDC-compliant IdP. A member signing in with an email at your registered domain is routed through your IdP and joins your org automatically.
Live
Role-based access control
Owner, admin, and viewer roles, enforced on every mutating action — kill switches, policies, approvals, billing, settings.
Live
SAML
Every major IdP this targets — Okta, Azure AD, Google Workspace — already speaks OIDC. SAML is a scoped fast-follow, available on request for enterprise deals that need it.
On request
Bring your own cloud
Deploy into your own cloud environment for teams whose data residency or network policy requires it. Scoped and priced per deployment.
Custom deployment
Observability & Integration
Every decision, streamed into the tools you already run.
Governance data reaches your SIEM and your own risk model in real time — it doesn't live only in Navige's dashboard.
SIEM streaming
An HMAC-signed event for every governance decision — allowed, denied, pending, approved, rejected, expired. Ingested natively by Splunk HEC, Datadog, Microsoft Sentinel, and Elastic.
Live
Blockchain-anchored audit trail
Hash-chain your audit log in batches and anchor the hash to Polygon. Opt-in, free on every plan.
Live
Agent Risk Score
Every agent scored 0–100 from real signals — autonomy level, coverage, ownership, denied or blocked calls, financial or destructive tool access, and access to sensitive systems.
Live
Gateway latency (p50/p95/p99)
Real overhead the governance layer adds to every tool call, computed from your own traffic and shown in your dashboard.
Live
On latency specifically: the number is only as meaningful as the traffic behind it. A brand-new organization sees a "too few samples" note until there's enough real call volume.
Contract & Compliance
Terms your legal and security teams can sign off on.
The paperwork a real procurement process needs.
MSA + DPA
A standard Master Services Agreement and a published Data Processing Agreement covering sub-processors, transfer mechanisms, and breach notification.