Concepts
A glossary of Nuxari's key product concepts in plain language.
Last updated: June 2026
Who this is for
Anyone new to Nuxari who wants to understand the terminology before exploring specific features.
Before you start
No prerequisites. This page is a reference you can return to at any time.
Organization
Your company's top-level account in Nuxari. All workspaces, users, connectors, and data belong to your organization. Data is never shared between organizations.
Workspace
The operational environment where your team works. Your organization has one workspace by default. All governance workflows, findings, and evidence are contained within your workspace.
User
A person invited to your Nuxari workspace. Each user has a role that determines what they can view and do. Users authenticate using email or your configured identity provider.
Role
A permission level assigned to each user: owner, admin, approver, requester, auditor, or readonly. Roles control what actions a user can take, for example, only approvers can authorize remediation plans. See Workspaces and Roles for the full breakdown.
Connector
An integration that connects Nuxari to an external system, such as Microsoft Entra ID, AWS, GitHub, or Okta. Connectors allow Nuxari to read the observed state of access in that system. Credentials are stored securely and never returned to the browser.
Edge Agent
A lightweight component you deploy inside an on-premises or air-gapped network segment. The agent collects governance evidence from systems that cannot be reached directly by Nuxari's cloud service and sends structured summaries outbound.
Observed State
What Nuxari actually sees in a connected system right now, the real permissions, memberships, and access assignments that exist in that system at the time of evaluation.
Approved State
The access your organization has formally authorized, the set of permissions, roles, and licenses that should exist for each user and system according to your policies.
Access Drift
The gap between your approved state and your observed state. When a user has more access than approved, or access that was never formally authorized, that difference is access drift. Nuxari surfaces drift as findings.
Finding
A specific access drift or posture issue identified during an evaluation. Each finding includes a severity rating, a description of what was observed versus what was expected, and a recommended action.
Control Pack
A pre-built library of governance checks organized around a specific area, for example, identity lifecycle, privileged access, or cloud exposure. Running a control pack produces a set of ranked findings and automatically captures evaluation evidence.
Remediation Plan
A structured response to a finding. A remediation plan defines what action will be taken, who must approve it, and what the expected outcome is. No high-impact action executes without a completed approval record.
Approval
A formal authorization step required before Nuxari executes a high-impact action. The assigned approver reviews the plan and either authorizes or rejects it. Nuxari records the approval decision as part of the audit trail.
Evidence Package
A bundled set of governance records, evaluation results, finding details, approval records, and execution summaries, that you can export and share with auditors. Evidence packages are structured to support audit-readiness reviews.
Audit Event
An immutable record of a single action taken in the platform, for example, a finding created, an approval completed, or a connector credential rotated. The audit log is a time-ordered sequence of all audit events in your workspace.
AI Governance Assistant
An AI assistant built into Nuxari that helps you query findings, draft remediation summaries, and understand evidence in plain language. The assistant provides recommendations, it does not execute access changes or bypass approvals.