Cloud Identity Audit by Sonrai Security releases industry-first risk insights engine. It identifies and remediates cloud misconfigurations with context. It performs agentless scanning and context-aware vulnerability prioritization. Cloud Identity Audit provides a comprehensive view of cloud identity risks within 24 hours, with specific next steps to maximize remediation value. It ingests activity logs and permission configurations across all layers of the cloud, as well as metadata from over 150 cloud services. Patented analytics create a comprehensive graph of interlocking identities, unique permissions, and affected data/infrastructure/services, highlighting risky access paths and toxic privilege combinations. Sonrai’s Toxic Permissions Analyzer reveals every attack path by decoding how complex policy layers interact to grant effective permissions. Indirect escalation scenarios, inherited admin rights, and hidden cross-cloud and cross-account trust are revealed by patented analytics, showing where to break the attack chains threatening the cloud. Every type of identity risk is explained, including the resources it affects and its importance to security posture. Everything is stack ranked by impact to the cloud, with recommended actions for immediate, mid-term, or long-term remediation.