What users may upload
SAML, OIDC, HAR, metadata, certificates, Windows/AD/Kerberos/LDAP notes, application errors, and mixed access evidence.
AccessTrace is designed around explicit upload, optional raw-artifact storage, redaction awareness, usage limits, and clear user control.
AccessTrace is not a silent browser or network monitor. Browser traffic analysis starts with an explicit HAR upload.
SAML, OIDC, HAR, metadata, certificates, Windows/AD/Kerberos/LDAP notes, application errors, and mixed access evidence.
Passwords, private keys, full session cookies, unredacted production tokens, and unrelated personal data.
Raw artifact storage is optional. Leave it unchecked unless full evidence retention is deliberately needed.
The AI receives the evidence needed to generate or explain the report. The assistant uses shortened report context and cannot change saved findings.
Assistant usage is limited by plan and by case. Large analysis submissions can also be capped with environment variables.
AccessTrace assists troubleshooting and report writing. Teams should confirm findings against authoritative IdP, SP, directory, endpoint, or application logs before making production configuration changes.