Early access

PAM, self-serve

Privileged access management without the six-month deployment. Check-in/check-out, just-in-time elevation, and session recording — manageable by your own team, in your own console.

What's coming

The capabilities we're unlocking for self-serve plans.

Just-in-time elevation

Ask, get approved, receive elevated access for a fixed window — then it's gone. No standing privileges.

Credential check-out

Vaulted credentials that only exist for the length of a session, injected at connect time.

Session recording

Every privileged SSH and RDP session recorded, searchable, and exportable to your SIEM.

Approval workflows

Break-glass requests routed to Slack or the console, with policy-driven auto-approvals for low risk.

Zero standing access

Default-deny for production, with policy that grants rights only when a ticket or window demands it.

Full audit trail

Who asked, who approved, what happened — one timeline per incident.

Join the waitlist

We onboard cohorts every few weeks. Tell us how you'd use it.

Waitlist priorities

Current OpenVLAN customers and teams already running session recording go first. Tell us your current setup — it helps us sequence.

Available today

SSO-authenticated SSH, session recording, and device posture are live on Enterprise. Self-serve PAM extends them to every plan.

OpenVLAN SSH →