Security alerts

Fewer alerts, each one worth reading

FlowSentinel raises alerts for the access patterns that actually create exposure, with the evidence attached so you can judge them quickly.

Example data, not a real portal

Security

Open security alerts

AlertPortalDetectedSeverity
Multi-team memberExample agency | sales2 hours agoHigh
Contact owned by two teamsExample agency | sales2 hours agoHigh
Super admin outside baselineExample team | serviceYesterdayMedium
Dormant account with export rightsExample portal | partnerYesterdayMedium
Baseline exemption recordedExample agency | marketing2 days agoInfo
Open alerts. All records shown are examples.

Details

What gets flagged

Multi-team members

An active person belonging to more than one team usually means access that survived a reorganisation.

Unusual admin behaviour

Bursts of privileged changes, out-of-hours actions and activity from unknown accounts are detected against organisation-specific rules.

Contacts shared across teams

Records owned or accessible by more than one team are listed with the owning and shared team identifiers and a capture timestamp.

Unreviewed super admins

Super admin accounts that are not in the approved baseline are surfaced for explicit sign-off.

Dormant accounts with reach

Accounts that have not been active recently but still hold export or admin rights are raised for removal.

Every name on an alert links through to that person's profile, so you can judge the finding against their full access before acting on it.