Shadow App Discovery by Reco Labs identifies unauthorized SaaS applications and provides visibility into both sanctioned and unsanctioned applications. It continuously monitors for shadow apps to support various use cases, including identifying applications without proper authorization, assessing applications used for non-work purposes that may lead to data theft, reducing exposure to applications that may have risk or legal consequences, and discovering unused applications that may lead to security vulnerabilities. Shadow App Discovery leverages identity context to identify and mitigate security risks, such as insecure app usage by employees and unauthorized access by compromised users. It monitors and detects suspicious activity in authorized and unauthorized applications to safeguard an organization's data and respond to potential security breaches. Shadow App Discovery reduces the SaaS attack surface from untrusted app vendors, overprivileged access, and redundant connections. It authorizes and deauthorizes risky apps to minimize the attack surface and provides near real-time visibility and analysis of the SaaS ecosystem, including sanctioned and unsanctioned applications, with notifications for new risky apps.