What problem does it solve? Founders and operators struggle to ensure every human and machine identity has only the minimum justified access, with timely approval, review, and removal. This Skill turns identity and access governance into an evidence-backed decision and operating plan instead of ad-hoc permission sprawl. ## Core Features & Use Cases - Identity & Entitlement Diagnosis: Inventories identities, maps roles and entitlements, and identifies toxic access combinations with evidence and confidence levels. - Least-Privilege Planning: Applies least privilege, schedules access reviews, and automates joiner-mover-leaver processes with risk-adjusted option ranking. - Governed Execution: Produces decision records, KPIs (excess privilege, orphaned accounts, review completion), monitoring cadences, and escalation routes with human approval gates. - Use Case: A founder asks whether contractor access is under control. The Skill inventories accounts, flags orphaned accounts and excess privilege, compares remediation options against hard constraints, and recommends a sequenced plan with owners and review dates. ## Quick Start Use identity access governance to audit our current user and service accounts and produce a least-privilege remediation plan with review cadences.