RapidValue IGA — Documentation
Concept reference for Identity Governance & Administration (IGA) builders, and for the security, IT, and procurement audiences evaluating RapidValue. These pages explain the product's model and the reasoning behind it — not click-by-click instructions. Last content sync: 2026-07-12.
Pages
Architecture
- Tier-3 hybrid architecture — Agent / tunnel / in-process — sovereignty and secret handling.
- Onboarding wizard walkthrough — From zero to an active system, with the wizard's skip-condition rules.
Concepts
- How the product is organized — The navigation model: My work, plus the Lenses, Operations, and Settings blocks.
- Account Types — Account categorization per system, with governance scope.
- Account Rules — Classification and ownership rules, with priority-based multiple rules per type.
- Provisioning mappings and lookups — Write mappings, sync mode, operators, lookups, and account attributes.
- Read/write parity — What happens when provisioning mappings and account rules drift apart.
- Sync Strategy — Upstream identity sources and system-to-system sync relationships.
- Imports and schedules — How data is imported and how sync schedules work, including the cadence floor.
- Reconciliation engine — Expected vs Actual access, drift detection, and per-system policies.
- JML flows — Joiner / mover / leaver — triggers, workflows, and leaver safety.
- Access reviews — One review engine, three trigger types: continuous, event, and campaign.
- Approvals workbench — The unified decision inbox, approver chains, and per-item resolution.
- Approver chains — Multi-step and quorum — one canonical shape plus the named chain registry.
- Governing API access — Scoped machine credentials, secret-once storage, and per-request enforcement.
- Unstructured data visibility — Seeing and governing access to file shares and other unstructured resources.
- Role-based scoping — How role-based filtering works on every list view.
- Filter DSL and attribute paths — One filter syntax for triggers, conditions, and separation-of-duties rules.
- Platform Advisor — Detector framework for tenant-wide health and read/write parity checks.
Operations
- Platform health — Scheduler sweep-run health, backup status, and the health surface.
- Failed Jobs queue — Provisioning failures land as tracked jobs with a config-change retry gate.
- Webhooks and notifications — Outbound event delivery and where it lives in Environment & connections.
- POC mode — Proof-of-concept trial posture, sovereignty defaults, and expiry behavior.
- Workflow Packages — Pre-built scenario bundles via the package registry.