IAM Platform · SaaS Ecosystems

Regain control over
your SaaS access

RevokesApp maps every OAuth authorization, API key, and third-party integration — before a forgotten access becomes an incident.

Start for free View product
247
applications linked to key tenants
38
inactive permissions to review
12
revocations prepared today

A living ledger
of all your authorizations

RevokesApp links each authorization to an app, a team, a contract, and proof of approval. IT teams finally see what's flowing between SaaS tools.

app.revokesapp.com / dashboard / access-inventory
Inventory
Action Queue
API Budgets
Contracts
Audit
Settings
APPLICATIONS
247
HIGH RISK
18
API BUDGETS
31
COMPLIANT
196
Application Sensitive Scope Team Status
Analytics Plugin
Google Workspace
Drive write, Admin read
Growth
Revoked
DataSync Bot
Slack
channels:write
Ops
Review
CRM Bridge
Microsoft 365
User.Read
Sales
Valid
Transcript Exporter
Zoom
recording:read
People
Review

Urgent decisions,
front and center

SL
Sheets Legacy Sync
No contract attached for 83 days.
Revoke
LA
Legal Add-on
DPA expired, document access still active.
Revoke
MM
Mail Merge X
High scopes, unknown owner.
Revoke

Simple decisions for
a complex system

The tool retains technical depth while presenting teams with actionable choices: approve, limit, transfer, monitor, or revoke.

Inventory

Real-time mapping

Sync connected apps across Google Workspace, Microsoft 365, Slack, Zoom, GitHub, and other SaaS platforms.

Revocation

Bulk revocation

Remove access by team, vendor, risk level, inactivity duration, or departure event.

Approval

Approval workflow

IT, security, legal, and procurement jointly validate before a new integration receives permissions.

Budgets

API Budgets

Limits by key, department, or project, with alerts and automatic blocking upon threshold exceedance.

Contracts

Linked contracts

Every active app points to its contract, DPA, SLA, and renewal date.

Audit

Time-stamped evidence

Logs for SOC 2, ISO 27001, GDPR, HIPAA, and quarterly internal reviews.

Forgotten integrations
change status quickly

A personal automation can become permanent access to files, emails, calendars, or code repositories. RevokesApp turns these gray areas into traceable decisions.

01
Orphaned authorizations
Tokens remain active after a project, a departure, or a team change.
02
Invisible Shadow IT
Locally adopted tools do not always enter the vendor review process.
03
Limitless API spending
Scripts and connectors can exceed budgets without a clearly defined owner.
04
Incomplete offboarding
Deactivating an account does not always remove third-party app authorizations.

Every action leaves
a readable trace

Security teams can show who granted access, why it still exists, when it should be reviewed, and what rule modified it.

SOC 2
Access logs and segregation of duties.
GDPR
Data minimization and lawful basis.
ISO 27001
Vendor control and third-party access.
HIPAA
BAA tracking and authorized apps.
Discovery82%
Revocation57%
Contracts74%
Budgets46%
09:14
Approval created
CRM Bridge approved by IT and procurement for the Sales team.
Evidence #4821
!
10:02
API threshold modified
Monthly budget reduced following an abnormal consumption peak.
Evidence #4822
×
11:36
Revocation scheduled
Sheets Legacy Sync marked as inactive and without an owner.
Evidence #4823
+
13:20
Contract attached
Vendor DPA added before license renewal.
Evidence #4824
Ready to regain control?

Deploy a living
ledger today

Integrations, contracts, API quotas, and audit evidence — without changing how your teams use their tools.

Request a demo Download security brief

Terms and
Conditions

Version 1.0 — Effective as of May 1, 2025 · RevokesApp SAS

Article 1 — Purpose and Scope

These Terms and Conditions (hereinafter "T&C") govern any subscription to the RevokesApp platform, a SaaS access governance service published by RevokesApp SAS, a simplified joint-stock company with a capital of €10,000, headquartered at 12 rue de la Paix, 75002 Paris, France, registered with the Paris RCS under number 123 456 789.

Any order implies unreserved acceptance of these T&Cs. The Client acknowledges having read and accepted them prior to any subscription.

Article 2 — Service Description

RevokesApp is a cloud identity and access management (IAM) platform dedicated to SaaS ecosystems. It enables:

  • Real-time inventory of applications and OAuth authorizations connected to the Client's tenants;
  • Management of API keys, quotas, and consumption budgets;
  • Single or bulk revocation of access by team, risk level, or departure event;
  • Linking of contracts, DPAs, and SLAs to each active integration;
  • Production of time-stamped audit logs compliant with SOC 2, ISO 27001, GDPR, and HIPAA.

RevokesApp reserves the right to evolve the service's features, subject to notifying the Client with a thirty (30) calendar day notice for any material modification.

Article 3 — Subscription Conditions

The service is accessible to legal entities with the legal capacity to contract. Subscription is done online via the site app.revokesapp.com or by a purchase order signed between the parties.

The subscription takes effect on the date of payment validation or, for custom orders, on the date the purchase order is signed. The Client receives their access credentials within a maximum of 24 business hours following the effective subscription.

Article 4 — Pricing and Payment Terms

The applicable rates are those in effect on the day of the order, available on the Pricing page of the revokesapp.com website. They are expressed in euros excluding taxes (HT). The applicable VAT is that in effect on the day of invoicing.

Available plans:

  • Starter — up to 50 connected applications, 3 administrator users;
  • Growth — up to 300 applications, 10 administrator users, API budgets included;
  • Enterprise — unlimited applications, SSO, guaranteed SLA, dedicated deployment upon quote.

Payment is monthly or annual (with a 20% discount on annual billing), by credit card via Stripe or bank transfer for Enterprise contracts. Any unpaid invoice within thirty (30) days will incur late penalties at the legal rate in effect plus 5 points.

Article 5 — Term, Renewal, and Termination

Subscriptions are concluded for an initial term of one (1) month or one (1) year depending on the chosen frequency. At the end of this period, they are automatically renewed for an identical period, unless terminated by registered letter with acknowledgment of receipt or via the administration interface, at least thirty (30) days before the expiration.

In the event of a serious breach by the Client of these T&Cs, RevokesApp may terminate the contract by right after a formal notice remains unheeded for fifteen (15) business days.

Article 6 — Client Obligations

The Client undertakes to:

  • Use the platform in compliance with applicable laws and regulations;
  • Not attempt to access other clients' data or bypass security mechanisms;
  • Maintain the confidentiality of their access credentials and notify RevokesApp without delay in case of suspected compromise;