$ every product image on this site is an unretouched screenshot of the running platform — demo tenant, fictional people, captured live
🤖 Platform · NHI

Service accounts and AI agents —
finally owned.

Every machine identity gets a type, an owner, a risk score and a review cycle. Unowned NHIs are a finding, not a fact of life — ownership coverage is a top-line KPI from day one.

Typed, tiered, owned

Autonomy decides the governance.

Service accounts, system accounts, applications, IoT devices and AI agents are classified into four autonomy tiers — from AI-assisted to AI-to-AI — because an autonomous agent needs different guardrails than a cron job.

  • Four autonomy tiers derived from identity type
  • Ownership coverage (% of NHIs with a named owner) as a KPI
  • Per-identity blast-radius: what could this NHI reach if compromised?
app.rapidvalue.eu/nhi
the NHI estate — owner, risk, last-used per machine identity
the NHI estate — owner, risk, last-used per machine identity

Machine-tuned governance

Cron jobs aren't leavers.

Dormancy thresholds are tuned for machine behaviour, a yearly ownership attestation ships seeded out of the box, and NHIs are excluded from human peer-group statistics so neither picture gets distorted.

  • Dormancy windows for machines (longer than humans, deliberately)
  • Yearly NHI ownership attestation — seeded, on by default
  • NHIs excluded from human peer-group baselines
…/certifications · rules
the yearly NHI ownership attestation rule — seeded, on by default
the yearly NHI ownership attestation rule — seeded, on by default

Related

See your NHIs governed on your own data.

A 30-minute kickoff connects your HR feed and one system — working POC the same day.