Skip to main content

Reports

OrbisID generates compliance and risk reports from your scan data. Reports are available in the web UI and can be exported to CSV (Pro and Enterprise editions).

Available Report Types​

ReportDescription
Privileged Without OwnerLists all privileged accounts that are not linked to an identity
Standing PrivilegesLists accounts with always-on privileged access
Not in PAM ToolLists privileged accounts not found in your PAM tool inventory
Shared Privileged AccountsLists accounts identified as shared (used by multiple people)
All Privileged AccountsComplete list of all accounts classified as privileged, including each account's Risk Score and its top contributing factor
System CoverageShows scan coverage - which systems have been scanned and when
Entitlement DistributionShows how high-privilege entitlements are distributed across accounts
KRI RemediationsLists accounts that need remediation to improve KRI scores

The Reports section also includes two interactive tools:

  • Access Graph — BloodHound-style interactive graph of your privileged-access surface; explore relationships, trace inheritance chains, and run path-finder queries between any two nodes.
  • PAM Gap Analysis — Structured maturity assessment against NIST, ISO 27001, SOx, GxP, Cyber Essentials, and HIPAA frameworks, with a signed PDF export.

Generating a Report​

  1. Navigate to Reports
  2. Select a report type from the dropdown
  3. Optionally apply filters (varies by report type)
  4. Click Generate

The report results appear in a table below with sorting, searching, and pagination.

Exporting to CSV​

Requires Pro or Enterprise edition — not available on Community.

  1. Generate a report
  2. Click Export CSV

The CSV export includes all rows matching the report criteria, regardless of the current page or search filter in the UI.

Report Data​

Reports are generated on-demand from the current database state. They are not stored - generating the same report twice produces fresh results.

Account-related report exports include an NHI Subtype column alongside Account Type, for Non-Human accounts that have one classified.

All report generations are recorded in the Audit Log.

API Access​

Requires Enterprise edition — not available on Community.

Reports can also be generated and exported via the REST API, enabling automation with external tools. See API Overview for endpoint details.