Saporo provides hybrid Identity Security Posture Management that automatically models access across on‑premises and cloud identity systems and maps graph‑based attack paths. Its platform continuously discovers millions of exploitable paths, highlights over‑permissioned accounts and hidden trusts, and presents the data in a unified dashboard for security teams to prioritize and remediate systemic identity risk at scale.
Funding
$4.2M raised to dateRaised to date based on public sources. This may differ from the amount the company actually raised and is based only on what is publicly available on the internet.

2OFounders
Product
Problem
Many organizations rely on complex identity infrastructures such as Active Directory, Azure AD, Entra ID, and cloud services, where excessive permissions, weak delegation, and hidden trust relationships create a large, constantly changing attack surface. Manual analysis of these environments cannot keep up with the volume of potential privilege escalation paths, leaving critical assets exposed to identity‑based attacks.
Solution
Saporo provides hybrid Identity Security Posture Management that automatically models access across on‑premises and cloud identity systems and maps graph‑based attack paths. The platform continuously discovers millions of exploitable paths, highlights over‑permissioned accounts, service principals, and applications, and surfaces weak delegation and hidden trusts. By visualizing these paths, security teams can prioritize remediation of systemic risks and enforce proper segmentation of critical assets. Saporo’s analytics are delivered through a unified dashboard that integrates data from AD, Entra ID, M365, Okta, AWS, and other sources, enabling scalable risk reduction without manual effort.
Target Audience
Primary customers are security and identity teams in mid‑size to large enterprises that manage hybrid on‑premises and cloud identity infrastructures and need automated risk assessment and remediation at scale.
Features
- Automated discovery of millions of potential attack paths across hybrid identity environments
- Graph‑based modeling of access relationships to reveal hidden trusts and privilege escalation routes
- Detection of excessive privileges, weak delegation, and over‑permissioned service principals and applications
- Unified dashboard that consolidates posture data from AD, Azure/Entra ID, M365, Okta, AWS, and other directories
- Real‑time alerts and prioritization of remediation actions based on systemic risk impact
- Support for both on‑premises (Active Directory, ADCS, SMB shares) and cloud identity platforms