Skip to main content

For IT & Security Teams

Close every open access door in one click

Departing employees leave accounts open across identity providers, SaaS apps, and dev tools. PurpletGo revokes access everywhere at once, tracks every asset until it is returned, and logs every action in a tamper-evident audit trail.

Built for IT and security teams

One-Click Access Revocation

Suspend accounts across Google Workspace, Slack, GitHub, Okta, and more - every revocation logged.

IT Asset Inventory

Track every device and credential per employee, and block closure until returned.

SCIM 2.0 Provisioning

A SCIM 2.0 endpoint so any IdP can push deprovisioning events in real time.

SAML 2.0 SSO

Enforce SSO with JIT provisioning, group-to-role mapping, and an emergency bypass code.

Role-Based Access Control

Five built-in roles with permissions enforced on every API endpoint, not just the UI.

Network & Session Security Controls

IP allowlisting, geo-blocking, and one-click termination of all active sessions.

Tamper-Evident Audit Log

Every entry is HMAC-signed and chained, so tampering is instantly detectable.

Public API & Developer Platform

A REST API with scoped keys, pagination, and a full OpenAPI 3.0 spec.

How PurpletGo fits into your IT workflow

Every system, one action

When an offboarding starts, PurpletGo suspends accounts across Google Workspace, Slack, GitHub, Okta, and every other connected identity provider simultaneously - instead of IT working through a list of apps one login at a time.

Assets tracked, not chased

IT asset inventory tracks every device and credential assigned to an employee, and the offboarding case cannot close until everything is confirmed returned - no more laptops that quietly never come back.

Identity infrastructure you already run

SAML 2.0 SSO with JIT provisioning and a SCIM 2.0 endpoint mean PurpletGo plugs into your existing IdP instead of becoming a second source of truth for identity.

An audit log that holds up

Every revocation is HMAC-signed and chained in a tamper-evident audit log, with role-based access control enforced at the API level - so the record of what was revoked, and when, is defensible.

Stop leaving access doors open

Set up automated access revocation today. Free plan available - no credit card required.

Start for Free