A clearer way to manage access

Improved Access Management

See users, groups, resources and policies in one place. Know who has access to what, why they have it, and how it was granted – without clicking between screens.

Sanne Øst
Sanne Øst – Chief Product & Technology Officer, walks through what's changing.
What changes for you

The new elements explained

Groups and employees define who. Resource sets define what. Access policies define how.

👥

Groups are now for employees only

No logins and no access rules – groups are only used to organise employees.

🔐

Gather logins in Resource Sets

Organise the logins you want to share in Resource Sets.

🔗

Give access through Resource Sets

Connect groups or individual employees to a Resource Set, apply an access policy, and get a complete overview of who has access to what.

An example

Same resources. Different access.

Finance needs access to 30 logins, while Management only needs 10. Split the resources into two Resource Sets and give each group access to the sets they need.

No duplicates

Resource Sets are created once and shared with multiple groups under different access policies.

Resource sets (what)

Organise logins into sets.

Groups (who)

People or groups who need access.

Access policies (how)

Each connection has its own policy with permissions and restrictions.

🔐
10 logins

Finance Core

Essential finance systems used by everyone in Finance and Management.

🔐
20 logins

Finance Extended

Additional tools used only by the Finance team.

👥

Finance Group

Needs access to all 30 logins.

👥

Management Group

Needs access to 10 essential logins.

🔓

Full access

No restrictions. All actions allowed.

🔓

Full access

No restrictions. All actions allowed.

🔒

Restricted access

Limited access. Cannot share or edit.

💡
Key takeaway

Build Resource Sets around how you want to share resources. Share the same set with multiple groups under different access policies.

Access is granted when you connect a group to a resource set and apply a policy. Same resource set, different policy, full visibility.

Take a look

Resources, groups and policies – in one screen

Uniqkey Admin Portal showing a resource set called Shared Applications, with the groups and individuals who have access on the left, and the logins, payment cards and secure notes included on the right.
Resource setThis is what you'll see: every group and person with access on one side, every login, card and note they can reach on the other.
The essentials

4 things to know about your new access overview

1

Know who has access to what

Open any resource set to see exactly which groups and individuals are connected to it – or start from a login or a group and get the same view in reverse.

What this means for youAccess is visible from wherever you look.
Resource set showing the People panel with groups such as Finance Team, Management team, Sales team, Support team and HR team, their policy and permission counts, and a policy dropdown open for Finance Team.

Every resource set shows exactly which groups and people have access.

2

Understand how access is granted

Access is granted by connecting a group to a resource set and applying a policy – not by editing the resource itself. The same resource set can carry different policies for different groups, so the full chain is always traceable: User → Group → Policy → Resource Set → Login.

What this means for youEvery access can be traced back to a policy.
Policies and Permissions step when adding a group to a resource set, with the choice between the same policies and permissions for all groups or different ones for each group.

Connecting a group to a resource set – apply the same policies and permissions to every group, or set different ones for each.

3

Audit logs, in context

Audit logs are tied to the view you're in. See changes, usage and admin actions directly, and prepare audit answers without manual digging.

What this means for youAudit-ready visibility, where the work happens.
Audit log for a resource set, showing an activity chart and a table of actions with the date, who performed the action, and a description.

Every action is logged with who did it, and when.

4

Access stays aligned with your organisation

Joiners get access through the right groups. Movers have old access removed and new access granted. Leavers have everything removed automatically.

What this means for youAccess follows organisational change.
Employees list showing status such as Active, alongside email, name, role, security score, Uniqkey access score, SCIM and last activity.
Access visibility, from every view

Answer "who can access this?" from wherever you start

The same core question – who has access, why, and how – answered from three different starting points.

By login

  • Who has access
  • Which groups grant it
  • Which policy applies
  • How access was inherited
  • Login-specific audit log
ValueAnswer "who can access this login?" instantly.

By group

  • Which logins it can access
  • Which resource sets link to it
  • Which policies apply
  • Which members inherit access
  • Group-specific audit log
ValueUnderstand what a team can access.

By resource set

  • Which groups have access
  • Which users inherit access
  • Which resources are included
  • Which policies apply
  • Resource set audit log
ValueSee who can access a business-critical area.

Trace the access path

For any access, you can see the complete path from user to login – no hidden or unclear access.

U
User
G
Group
P
Policy
RS
Resource set
L
Login
Know who has access
Understand how access was granted
Track all changes
Audit-ready evidence
Why we built this

The same resources, different access

All secured data view showing a flat list of 2,317 logins with security score, 2FA status, and Managed by column showing Employees, Groups, or Unmanaged.

Uniqkey's group model works well for straightforward access. You create a Finance group, add the right people, add the right logins, and set the permissions that apply. For many organisations, that's enough.

The limits show up when the same resources need to be used differently across the organisation. A Finance group might contain 30 Finance logins. The Finance team needs access to all 30. The CEO needs access too, but with different permissions. Management might only need 10 of the 30. An external accountant needs temporary, restricted access to five.

Today, each of these relationships is built as another group around the same resources. As access needs grow, so does the number of overlapping groups built around the same logins.

The model can still represent the access. The problem is that it becomes increasingly difficult to manage and understand.

Common questions

FAQ

There will be a "Migrate now" button in the platform. We'll also send reminder emails leading up to the migration.

Your groups stay groups. Your existing logins are organised into resource sets. Access that exists today stays the same – including your current policies and permissions, all of it is carried over. Your employees won't notice anything.

No, your employees won't notice a thing. Admins will – the interface changes slightly, and access is managed from a few different places in the Admin Portal.

We recommend that you migrate. Improved Access Management is where we're taking access management in Uniqkey going forward.

As organisations grow, the same resources often need to be shared differently across teams, which today means building overlapping groups just to represent different levels of access. We wanted to make it easier to manage and understand access, so we made the resource itself, not just the group, a first-class part of the model.

Feel free to reach out to your designated Customer Success Manager, or contact support@uniqkey.eu. We'll help you as fast as possible.

Still have questions?

Email support@uniqkey.eu or get in touch with your Customer Success Manager.

Email support@uniqkey.eu