All analysis was generated autonomously, without human review. Scores are analytical opinions drawn from the cited public sources, without hands-on testing. They are not audits, certifications, investment reports, purchasing advice, or evaluations of quality.
Unixi's browser extension signs employees into the SaaS apps that a company's identity provider cannot reach, generating a fresh credential at each login so no password exists to steal. Once passwords stop existing, the customer reaches those apps only through Unixi, which makes the product hard to remove and puts a startup of a few dozen people in the execution path of every such login, on a protocol with no independent audit in the cited public record. Customers surface as logos on Unixi's homepage, alongside testimonials that name people but no organizations. The pitch also promises to pay for itself by canceling the premiums that SaaS vendors charge for single sign-on, which targets the budget owner as much as the security team.
| Description | Identity security startup whose browser extension extends a company's existing identity provider to unmanaged SaaS apps, replacing passwords with credentials derived at login and adding SaaS discovery, governance, and user lifecycle management. | [f1] |
|---|---|---|
| Founded | 2023 | [f2] |
| HQ | Wilmington, Delaware, US | [f2] |
| Funding | $6.5M total | [f2] |
| Latest funding | Seed | [f3] |
| Product | What it does |
|---|---|
| Unixi Universal SSO | Browser extension and dashboard that bring single sign-on, MFA, and passwordless login to SaaS apps an identity provider cannot reach, with SaaS discovery and lifecycle management. |
Cyber Defense Matrix
| Identify | Protect | Detect | Respond | Recover | |
|---|---|---|---|---|---|
| Devices Workstations, servers, phones, tablets, storage, network devices, IoT infrastructure, and similar hardware. | |||||
| Applications Software, interactions, and application flows on the devices. | |||||
| Networks Connections and traffic flowing among devices and apps, plus communication paths. | |||||
| Data Content at rest, in transit, or in use across devices, apps, and networks. | |||||
| Users The people using the devices, apps, networks, and data. |
Discovers SaaS applications and the accounts using them, and enforces passwordless access and MFA for human users. The product is mapped to the Cyber Defense Matrix.
How well the company can compete in its security market, scored across eight dimensions against public evidence.
| Dimension | Score | Rationale |
|---|---|---|
| Problem Clarity How precisely the company defines its problem, with evidence the problem exists at the scale claimed. | 3/5 | Unixi names the gap precisely. SaaS apps outside the identity provider still authenticate with passwords, and shared accounts and offboarding go unmanaged. The quantified pain, such as the claim that 80% of applications stay unmanaged, appears only in vendor-authored material, so corroboration stops at the company and its investor. [s1, s8, s14, s13] |
| Capability Depth How specific the technical capabilities are, with evidence beyond marketing claims such as docs and third-party validation. | 3/5 | The vendor explains the mechanism in unusual detail for a seed company, including the four-key derivation behind its KDA protocol, device revocation, and lifecycle deprovisioning. No public documentation portal, third-party evaluation, or independent technical writeup surfaced, so vendor prose alone supports those claims. [s4, s3, s5, s8] |
| Market Timing Whether the market is ready for this product, with evidence that buyers are actively seeking solutions. | 3/5 | The New York Department of Financial Services required MFA across systems with nonpublic information by November 1, 2025, so password-only SaaS apps became a compliance gap for regulated buyers, and Cerby, Push Security, and Grip Security ship against the same unmanaged-app pain, which shows a category forming. Direct buyer-side signals, such as analyst notes or RFP language, again did not surface in re-fetched sources, so the score holds at 3. [s6, s15, s16, s17] |
| Team Credibility Demonstrated domain expertise with public signals such as prior exits, publications, and industry recognition. | 2/5 | Founders Chad Gerstensang and Reuvein Vinokurov are publicly identifiable, and Reuvein writes the company's technical blog. A third co-founder, Moshe Lopian, is listed as COO on The Org, whose data the site marks unverified. The founders' offensive-security expertise is claimed by the company and by its investor podcast, and no independent proof, such as prior exits, publications, or community recognition, appears in the cited record. [s13, s2, s4, s12] |
| GTM Proof Evidence of actual traction (customers, revenue signals, partnerships) beyond stated intentions. | 3/5 | The homepage logo wall carries customer marks as named image files, including Paramount, Intuit, Cymulate, WELL Health, LifeLabs, Hippo, Knix, and Luno, and the testimonials section quotes named individuals, Matthew Hurewitz, Iain Paterson, Mike Melo, and Julian Boddy, with titles but no customer organizations. No named customer case studies or press-confirmed deployments exist. The score includes a small upward adjustment for indirect signals, since Hyperwise Ventures and Alumni Ventures backing suggests traction that is real but undisclosed. [s18, s25, s1, s10, s13] |
| Funding Efficiency Whether funding matches go-to-market ambition, with signs of capital-efficient growth. | 3/5 | A $6.5M raise supports a team The Org places in the 11 to 50 range, a logo wall of enterprise brands, and a shipping cadence that added lifecycle management in April 2026, which reads as output proportional to seed capital. The traction behind the logos is vendor-claimed only, so efficiency cannot be confirmed beyond adequate. [s10, s5, s12, s1] |
| Category Clarity Whether the company creates or fits a recognizable category that buyers can quickly place in their stack. | 2/5 | Universal SSO is Unixi's own label, and the company's FAQ must explain that the product is not a password manager and does not replace the identity provider, which signals buyers cannot yet place it unaided. Aggregators file the company under broad identity security rather than a recognized budget line. [s4, s2] |
| Incumbent Defensibility How vulnerable the core value proposition is to absorption as a feature by a platform vendor. | 2/5 | Password managers, identity providers, and browser-security vendors already sell to the same buyer and could ship browser-based passwordless coverage for unmanaged apps as a tier feature. The KDA protocol is claimed as proprietary and patented, but no patent, audit, or data moat was verifiable in public sources. [s15, s16, s4, s13] |
Unixi defines its problem as the SaaS applications an identity provider cannot manage. Apps without SAML support authenticate with passwords outside the company's security controls, employees share credentials and adopt tools on their own, and offboarding stays manual. The homepage states the stakes plainly, calling credential theft the number one cause of enterprise breaches.
The buyer is the security or IT leader in a mid-size or regulated company. The company's investor frames healthcare and finance as the industries where Unixi gains momentum, which is promotional positioning rather than independently verified vertical traction, and a dedicated page targets New York financial institutions facing the NYDFS MFA deadline of November 1, 2025. A cost-savings calculator addresses the budget owner as directly as the defender.
Scale claims remain vendor-authored. The company's award nomination asserts that 80% of applications go unmanaged by identity providers and that its discovery engine finds an average of 150 new apps per month at large organizations, and no independently fetched source corroborates either figure. [s1, s8, s13, s6, s9, s14]
Unixi Universal SSO performs the login itself from inside the browser. The extension identifies the authentication intent of a web login field, runs a local cryptographic handshake, and submits what the application reads as a standard login while the organization records a managed, passwordless event.
The KDA protocol derives credentials rather than storing them. The vendor describes four independent keys, scoped to the user, the company, the device, and the session, that combine into a per-application hash generated at login time, so no password vault exists. When a device is lost, an administrator revokes that device's key from the dashboard, and optional MFA layers on top by policy.
Discovery and lifecycle management complete the platform. The discovery engine classifies the applications employees use and flags shared accounts, orphan accounts, and weak or reused passwords, and the Lifecycle Management release of April 2026 added remediation actions such as revoking access and deprovisioning accounts.
Validation beyond vendor prose is absent. A demo video and a free trial exist, but no public documentation portal, third-party technical evaluation, or independent writeup of the mechanism appears in the public record. [s4, s3, s5, s8, s1]
Unixi positions against both the password manager and the identity provider while replacing neither. Its FAQ contrasts passive password vaults with what it calls an active generator, keeps the IdP as the directory of record, and claims customers can downgrade expensive IdP tiers because Unixi takes over the execution of logins.
The unmanaged-app space is already contested. Cerby sells identity automation for the apps identity tools cannot reach, Push Security sells a browser extension that hardens workforce identities against credential attacks, and Grip Security overlaps on SaaS discovery and identity risk visibility.
The differentiation claim combines mechanism and economics. Unixi promises single sign-on coverage with no SAML integration work and no SSO tax, and its cost-savings calculator turns that billing grievance into the opening sales argument. [s4, s2, s15, s16, s17, s9]
Unixi sells through demos and a free trial, with the founders fronting the public motion. Chad Gerstensang carried the pitch on his investor's podcast in January 2025, Reuvein Vinokurov writes the technical blog, and the site banner promotes a SecureWorld webinar against password managers.
Customer evidence is a logo wall. The homepage displays brands as named logo image files, including Paramount, WELL Health, Hippo, Cymulate, Intuit, LifeLabs, Knix, and Luno, with no case studies, named champions, or press-confirmed deployments behind them.
Investors and an awards push supply the remaining public proof. Alumni Ventures is among the backers of the company's $6.5M of funding, and Unixi entered the 2026 Cybersecurity Excellence Awards as a candidate in a company innovation category. [s13, s4, s1, s18, s10, s14]
The founding team is small and its public record is thin. Chad Gerstensang is co-founder and CEO, Reuvein Vinokurov is co-founder and CTO, and The Org lists a third co-founder, Moshe Lopian, as COO. The same source places headcount in the 11 to 50 range and lists 19 positions, all marked unverified.
Background claims come from the company and its investor. The company page describes the founders as recognized experts in cyber security, the Alumni Ventures podcast describes offensive-security experience and patented technology, and no independent proof, such as prior exits, publications, or community recognition, appears in the cited record. [s13, s2, s10, s12]
Unixi's public trust collateral mixes contracts with self-displayed badges. The site publishes an SLA, a subscription agreement, and a privacy policy on dedicated legal pages, and the subscription agreement incorporates a data processing addendum by reference. The homepage footer band beside the Team, Career, and Contact links also carries two image-only certification badges, an ISO 27001 roundel and an AICPA SOC seal for SOC 2, each rendered as a small image rather than a text claim. Those badges are the whole attestation surface, with no inspectable trust portal and no downloadable report behind them, so a buyer sees the claim but cannot read the audit.
The product asks for unusual trust while offering an unaudited answer. Unixi generates and controls the credentials for every unmanaged application its customers use, and the vendor's zero-knowledge architecture claim carries that weight without a published third-party audit of the KDA protocol. Enterprise procurement teams will probe exactly that gap. [s1, s4, s2, s21, s22, s23, s24]
| Company | Relationship | Note | Compare |
|---|---|---|---|
| Cerby | competes with | Cerby manages and automates access for what it calls disconnected apps, the same population of applications that identity providers cannot reach. | |
| Push Security | competes with | Push Security sells a browser extension that hardens workforce identities and stops credential attacks in the browser. | |
| Grip Security | adjacent | Grip Security overlaps on SaaS discovery and identity risk visibility but does not perform the login itself. | |
| 1Password | competes with | Unixi's own FAQ positions Universal SSO against password-manager vaults, the category where 1Password sells to the same enterprise buyers. | N/AWe scored these companies at different scopes, so the totals measure different things. |
| Okta | adjacent | Unixi extends identity providers such as Okta rather than replacing them, while telling buyers they can downgrade expensive IdP tiers. | N/AWe captured the evidence for these companies under different evidence-model versions (v1 vs v2), so the totals were scored under different conditions and are not directly comparable. |
Add analyzed competitors to compare them side by side with Unixi.
A closer look at the company's product strategy, measuring how defensible it is against market forces and examining the eight areas behind it.
pivot urgently
Unixi has one genuine source of stickiness, and a position that is otherwise reproducible. Once the product replaces passwords, the cited record discloses no exit, export, or migration path, so what leaving costs a departing customer is undisclosed removal friction that grows with every app brought under management. Beyond that, the position is copyable. Customers buy pure software, no certification or regulation requires Unixi specifically, and the browser-level mechanic is the kind of engineering that password managers and identity providers already practice at scale. The claimed patent on KDA could harden the position, but it could not be verified in public records, and the cited record shows no pooled cross-customer data to fill the gap.
| Dimension | Score | Rationale |
|---|---|---|
| Value Delivery Does the product sell software as the product, or judgment, trust, or accountability with software as the delivery mechanism. | 1/3 | Customers buy software through a free trial and subscription order forms. No judgment, accountability, or managed-service layer is part of the public offer. |
| Switching Cost How expensive leaving is for a customer: data portability, integrations, learned workflows, network effects, regulatory data residency. | 2/3 | Once Unixi replaces passwords, derived credentials exist only through Unixi, and the cited record discloses no exit, export, or migration behavior, leaving the cost of departure undisclosed but structurally real. Discovery history and lifecycle workflows add friction, but no network effects or regulatory residency requirements raise it further. |
| Compliance Moat Whether certifications, liability acceptance, or audit trails block an easy replacement. | 1/3 | Unixi sells into compliance pressure such as the NYDFS MFA mandate and self-displays ISO 27001 and AICPA SOC badges in its homepage footer, but those badges are table-stakes vendor assertions with no inspectable report or liability position, and no certification requires Unixi specifically. Nothing blocks a determined replacement. |
| Problem Complexity Whether the product requires ML, optimization, real-time systems, or years of specialized expertise. | 2/3 | Recognizing login flows across arbitrary SaaS apps and deriving credentials in real time is non-trivial browser engineering that app changes and adversaries keep moving. It is not ML-grade work, and password managers exercise adjacent mechanics daily. |
| Buyer Profile Whether buyers are SMB operators, mid-market IT teams, or regulated enterprises and governments with procurement gates. | 2/3 | Unixi courts regulated healthcare and finance organizations, but the public record does not establish customer-size concentration, the logo wall spans consumer and business brands without deployment detail, and a free trial lowers the entry bar, which keeps the profile blended. |
| Layer Whether the product is an end-user application, a platform with application features, or infrastructure other applications depend on. | 2/3 | The extension becomes the execution layer for every unmanaged login, which is more than an end-user application but less than infrastructure other applications depend on. The identity provider keeps the system-of-record position. |
| Proprietary Data, Content, or IP Whether the product accumulates datasets, content licenses, or IP that a rival cannot recreate from scratch. | 1/3 | The KDA protocol is only claimed as proprietary and patented, with no patent verifiable, and the discovery engine accumulates login-flow knowledge across apps that a new entrant could re-derive. Both are replicable with time and effort and there is no named non-public cross-customer pooled corpus, so the data position is replicable rather than a moat. |
Unixi targets regulated enterprises, led by healthcare and finance. The company's investor names those two industries as where Unixi gains momentum, a dedicated page courts New York financial institutions under the NYDFS MFA mandate, and the homepage logo wall carries customer marks as named image files, including Paramount, WELL Health, Hippo, Cymulate, Intuit, and LifeLabs.
The company sells to two personas at once. The security pitch, eliminating credential theft and shadow SaaS, addresses the CISO, while the cost-savings calculator and the promise of escaping SSO premiums address the budget owner who approves renewals. That duality shows up across the site, where compliance pages and savings pages carry equal weight.
Public proof of demand stays thin. The logos are undated, the case studies page holds a single anonymized story about a top US bank that names no customer, and the freshest public activity is vendor-side, a Lifecycle Management launch in April 2026 and a blog cadence running into mid-July 2026, which shows the company shipping but not who is buying.
Unixi builds the whole capability set on one mechanic. The Unixi extension recognizes the login flow of a web application, reads four independent keys, stored in different locations and tied to user, company, device, and session context, then combines and hashes them into the credential it submits, so single sign-on, MFA enforcement, and passwordless access all ride the same interception point. Unixi reuses that vantage for discovery and lifecycle management to inventory apps, flag shared and orphan accounts, and deprovision users.
The claimed advantage is architectural rather than AI-driven. Unixi claims no AI-model moat, but it now markets Shadow AI Governance as a browser-layer visibility and control use case, promising to uncover hidden AI tools and revoke unauthorized MCP connections. Unixi otherwise differentiates on the no-integration deployment and on KDA generating credentials instead of storing them, which the vendor argues leaves no vault to breach and nothing for infostealer malware to harvest.
The candidate accumulating asset is knowledge of login flows. An extension that must keep pace as SaaS login pages change likely requires app-specific compatibility knowledge that grows with use, but the cited record does not show whether Unixi retains or pools such a corpus. The vendor does not present it as a data advantage.
Unixi demonstrates the product only through a video and a trial. The mechanism is described in unusual detail on vendor pages, but no third-party evaluation, public documentation portal, or independent technical writeup corroborates the descriptions.
Unixi runs a founder-visible, demo-led motion with a free trial attached. Chad Gerstensang pitched the company on its investor's podcast in January 2025, Reuvein Vinokurov writes the technical blog, the site banner promotes event appearances, a Black Hat presence as of July 2026, and the primary calls to action are a demo booking and a free trial.
Channel evidence is absent. No cloud marketplace listing, reseller program, or MSSP relationship appears in the cited public record, so distribution reads as direct sales plus whatever the awards circuit and investor media reach.
Founders fronting sales at this stage is appropriate rather than concerning. The gap is not selling capacity but referenceable proof. The logo wall names recognizable brands, and the testimonials section quotes named individuals, Matthew Hurewitz, Iain Paterson, Mike Melo, and Julian Boddy, with titles such as CISO or VP Cybersecurity Operations, but no customer organization is attributed and no named customer case study or press-confirmed deployment exists. Converting one logo into a named case study would do more for the motion than any channel deal.
Unixi publishes no prices and sells against a named cost instead. The cost-savings calculator monetizes the SSO tax, the vendor claims SaaS vendors charge 50–100% premiums for enterprise tiers that unlock SAML, and the FAQ adds that customers can downgrade expensive identity-provider tiers once Unixi covers execution.
Hidden pricing implies negotiated, sales-assisted deals. The charging unit is undisclosed, so whether Unixi prices per user, per app, or per seat-month stays unknown, and the calculator sizes the customer's savings rather than the product's cost. Framing the purchase as self-funding is a strong opening position, and it also ties the product's perceived value to a billing practice its competitors or regulators could erode.
Deployment is the core of the pitch. The platform page claims the technology deploys in seconds, the extension requires no integration with the target applications and works alongside the customer's identity provider, and the FAQ describes zero backend configuration.
Operations run through a dashboard. Administrators control access by role and group, revoke a lost device's key, watch authentication patterns, and, since the April 2026 Lifecycle Management release, remediate findings such as orphan accounts and deprovision users directly.
The browser is the load-bearing dependency. Public pages describe coverage for browser-based applications, native desktop and non-browser login coverage is not documented in the cited material, and the mechanic depends on the extension APIs that browser vendors control.
Unixi's public trust posture mixes contracts with self-displayed badges. The site carries a Service Level Agreement, a subscription agreement, and a privacy policy on dedicated legal pages, and the homepage footer band beside the Team, Career, and Contact links carries two image-only certification badges, an ISO 27001 roundel and an AICPA SOC seal for SOC 2, both seen in the June 2026 capture with the ISO badge image still served in the live footer bytes in July 2026, each rendered as a small image rather than a text claim. Those badges are the whole attestation surface found: a 2026-07-16 probe of the trust and security subdomains and the /trust, /security, and /compliance paths found no trust portal and no downloadable report, so a buyer sees the claim but cannot read the audit.
The trust ask is larger than the trust evidence. A customer who adopts Unixi routes every unmanaged login through the vendor's protocol and gives up stored passwords entirely, so the company's zero-knowledge claim and its KDA design, which shows no independent audit in the cited record, carry the full weight of that decision. The footer badges assert ISO 27001 and SOC 2 but stop at the logo, and for the regulated buyers Unixi targets, a published third-party audit a buyer can open is the piece of collateral most likely to unblock procurement.
Unixi positions as a layer on the identity provider, not as a platform. The FAQ frames the product as a layer that strengthens the identity provider while leaving the IdP as the source of truth, and the company describes elevating an existing IdP rather than competing for the directory.
Ecosystem motion has not started publicly. No API documentation, integration directory, technology partnerships, or marketplace listings surfaced, so the product neither draws distribution from an ecosystem nor offers surfaces for others to build on. The Lifecycle Management addition expands the product suite-style, within its own boundary, rather than through partners.
Unixi is a small founding team carrying an enterprise-grade trust claim. Chad Gerstensang leads as CEO and co-founder, Reuvein Vinokurov as CTO and co-founder, and The Org lists a third co-founder, Moshe Lopian, as COO. The same source places headcount in the 11 to 50 range, and PitchBook reports $6.5M raised in total, including a $6M seed round, with Alumni Ventures among the investors.
The public record behind the team is thinner than the product story. The company page describes the founders as recognized experts in cyber security, the offensive-security background and the patent claim come from the company and its investor's podcast, and the founders' site bio pages render without biographical content. For security buyers who evaluate the people behind an early product, independent corroboration of the claimed expertise and patent does not yet appear in the cited record.
| Id | Source | Tier | Accessed |
|---|---|---|---|
| f1 | Unixi homepage | official | 2026-06-11 |
| f2 | PitchBook profile for UNIXi | research | 2026-06-11 |
| f3 | PitchBook profile for UNIXi | research | 2026-07-02 |
| Id | Source | Tier | Accessed |
|---|---|---|---|
| s1 | Unixi homepage “Credential theft remains the number one cause of enterprise breaches.” | official | 2026-06-12 |
| s2 | Unixi company page “Founded by recognized experts in cyber security, Unixi is reinventing SSO with a decentralized, proprietary technology that enables companies to achieve 100% SSO coverage with no integrations and no SSO tax.” | official | 2026-07-02 |
| s3 | Unixi platform page “Its decentralized technology deploys in seconds to deliver total SaaS visibility and total security coverage - with no integrations, no SSO tax, and zero user friction.” | official | 2026-06-12 |
| s4 | Unixi blog on how Universal SSO works “Many SaaS vendors charge 50–100% premiums for "Enterprise" tiers” | official | 2026-06-12 |
| s5 | Unixi Lifecycle Management launch post “We are moving beyond risk analysis to deliver true, end-to-end identity and user management – all while staying true to our Zero-Integration core.” | official | 2026-06-12 |
| s6 | Unixi NYDFS MFA page “By November 1, 2025, all New York financial institutions must enforce MFA across privileged accounts, remote access, and systems with nonpublic information.” | official | 2026-06-12 |
| s8 | Shared accounts use case page | official | 2026-06-12 |
| s9 | Unixi cost savings page “Unlike traditional SSO providers that cover only a fraction of SaaS applications and charge costly ‘SSO taxes’ for third-party integrations” | official | 2026-06-12 |
| s10 | PitchBook profile for UNIXi “UNIXi has raised $6.5M.” | research | 2026-06-12 |
| s12 | The Org profile for UNIXi “Employees 11-50. Org chart: Chananel (Chad) Gerstensang Co-Founder & CEO, Reuvein Vinokurov Co-founder & CTO, Moshe Lopian Co-founder & COO, Levona Simha VP Of Marketing. Positions (19) Unverified.” | research | 2026-06-18 |
| s13 | Alumni Ventures Tech Optimist episode 87 on UNIXi “Their patented technology takes a unique integration-less approach to identity security, giving businesses seamless protection without the usual complexity.” | press | 2026-06-12 |
| s14 | Cybersecurity Excellence Awards 2026 nomination for Unixi “the 80% of applications, known as non-SAML or Shadow SaaS, that remain unmanaged by traditional Identity Providers (IdPs) and rely on vulnerable passwords” | press | 2026-06-12 |
| s15 | Cerby homepage “Securely manage and automate access for the apps your identity tools can’t reach.” | official | 2026-06-12 |
| s16 | Push Security homepage | official | 2026-06-12 |
| s17 | Grip Security homepage | official | 2026-06-12 |
| s18 | Unixi homepage Trusted by logo wall “Trusted by logo images: Paramount-1.svg, well-health.svg, Hippo-1-1.svg, cymulate.svg, intuit.svg, lifelabs.svg, shlomo.svg, knix, boat, luno.” | official | 2026-06-18 |
| s21 | Unixi Service Level Agreement “Service Level Agreement (SLA). Support Services: Unixi will provide the following support services.” | official | 2026-06-18 |
| s22 | Unixi Subscription Agreement “The provisions of the Data Processing Addendum available at http://Unixi.IO/dpa/” | official | 2026-07-02 |
| s23 | Unixi Privacy Policy “Unixi Inc. is committed to maintaining the privacy of its users. The following information describes how Unixi collects and processes information about you.” | official | 2026-06-18 |
| s24 | Unixi homepage footer trust badges (ISO 27001 and AICPA SOC) “Footer band beside Team, Career, and Contact links carries two image-only badges rendered at 70 by 68 pixels: ISO-27001-white-1.png (ISO 27001 roundel) and Frame-427320630.png (AICPA SOC seal for SOC 2).” | official | 2026-06-18 |
| s25 | Unixi homepage testimonials section “Testimonial names and titles rendered on the homepage: Matthew Hurewitz Associate Director, Application Security. Iain Paterson CISO. Mike Melo CISO. Julian Boddy VP Cybersecurity Operations. No customer organization is attributed.” | official | 2026-07-02 |
| Id | Source | Tier | Accessed |
|---|---|---|---|
| s1 | Unixi homepage “Credential theft remains the number one cause of enterprise breaches.” | official | 2026-06-11 |
| s2 | Unixi company page “Founded by recognized experts in cyber security, Unixi is reinventing SSO with a decentralized, proprietary technology that enables companies to achieve 100% SSO coverage with no integrations and no SSO tax.” | official | 2026-07-02 |
| s3 | Unixi platform page “Shadow AI Governance Bring the rapid, uncontrolled AI adoption out of the shadows and under control. Discover & Detect: Instantly uncover hidden AI tools and uncontrolled personal accounts the moment employees authenticate.” | official | 2026-07-02 |
| s4 | Unixi blog on how Universal SSO works “Many SaaS vendors charge 50–100% premiums for "Enterprise" tiers” | official | 2026-06-11 |
| s5 | Unixi Lifecycle Management launch post “We are moving beyond risk analysis to deliver true, end-to-end identity and user management – all while staying true to our Zero-Integration core.” | official | 2026-06-11 |
| s6 | Unixi NYDFS MFA page “By November 1, 2025, all New York financial institutions must enforce MFA across privileged accounts, remote access, and systems with nonpublic information.” | official | 2026-06-11 |
| s8 | Shared accounts use case page | official | 2026-06-11 |
| s9 | Unixi cost savings page “Unlike traditional SSO providers that cover only a fraction of SaaS applications and charge costly ‘SSO taxes’ for third-party integrations” | official | 2026-06-11 |
| s10 | PitchBook profile for UNIXi ($6.5M total raised, $6M seed round) “UNIXi has raised $6.5M.” | research | 2026-06-11 |
| s12 | The Org profile for UNIXi “Employees 11-50” | research | 2026-06-16 |
| s13 | Alumni Ventures Tech Optimist episode 87 on UNIXi “Their patented technology takes a unique integration-less approach to identity security, giving businesses seamless protection without the usual complexity.” | press | 2026-06-11 |
| s14 | Cybersecurity Excellence Awards 2026 nomination for Unixi “the 80% of applications, known as non-SAML or Shadow SaaS, that remain unmanaged by traditional Identity Providers (IdPs) and rely on vulnerable passwords” | press | 2026-06-11 |
| s15 | Cerby homepage “Securely manage and automate access for the apps your identity tools can’t reach.” | official | 2026-06-11 |
| s16 | Push Security homepage | official | 2026-06-11 |
| s17 | Grip Security homepage | official | 2026-06-11 |
| s18 | Unixi homepage Trusted by logo wall “Trusted by logo images: Paramount-1.svg, well-health.svg, Hippo-1-1.svg, cymulate.svg, intuit.svg, lifelabs.svg, shlomo.svg, plus alt-text marks knix, boat, luno.” | official | 2026-06-18 |
| s19 | Unixi homepage footer trust badges (ISO 27001 and AICPA SOC) “Footer band beside Team, Career, and Contact links carries two image-only badges rendered at 70 by 68 pixels: ISO-27001-white-1.png (ISO 27001 roundel) and Frame-427320630.png (AICPA SOC seal for SOC 2).” | official | 2026-06-18 |
| s20 | Unixi homepage testimonials section “Testimonial names and titles rendered on the homepage: Matthew Hurewitz Associate Director, Application Security. Iain Paterson CISO. Mike Melo CISO. Julian Boddy VP Cybersecurity Operations. No customer organization is attributed.” | official | 2026-07-02 |
| s21 | Unixi case studies archive “Case Study How a Top U.S. Bank Went Passwordless to Secure Non-SAML Applications Reuvein Vinokurov September 2, 2025” | official | 2026-07-02 |
| s22 | Unixi blog archive (live 2026-07-16, newest post July 13) “The Identity Timeline Asymmetry: Why Our Dashboards Are Lying to Us Mohamed Mawji July 13, 2026” | official | 2026-07-16 |
| s23 | Unixi Service Level Agreement page “Service Level Agreement (SLA) - Unixi” | official | 2026-07-16 |
| s24 | Unixi Subscription Agreement page “Subscription Agreement - Unixi” | official | 2026-07-16 |
| s25 | Probe of Unixi trust surfaces 2026-07-16: trust and security subdomains NXDOMAIN, /trust /security /compliance serve the homepage shell, no portal | other | 2026-07-16 |
| s26 | Unixi homepage KDA description (live 2026-07-16) “Authentication is driven by Key Derived Authentication (KDA), a multi-key, multi-location system that guarantees complex authentication controls are never stored anywhere.” | official | 2026-07-16 |
This site is an experimental research aid created by Zeltser Security Corp. All its data gathering and analysis was performed autonomously without human review, and it can contain errors of fact, interpretation, and judgment that a human reviewer might catch.
The analyses are statements of opinion, not statements of fact. Machine analysis produced the scores, summaries, and matrix placements by weighing the public sources each page cites, and reasonable people can weigh the same sources differently. Where a page states a fact, it cites the public source and the date it was checked, and the statement is only as accurate as that source. Unless a profile expressly says otherwise, the analysis involves no hands-on testing and no independent validation of any company's products or services.
Nothing here is professional, security, legal, financial, investment, or purchasing advice, and nothing here is a recommendation to invest in, do business with, or avoid any company. Inclusion of a company is not an endorsement, and absence of a company is not a judgment about it. Reading this site creates no advisory or client relationship. Verify any detail you plan to act on against the vendor's current materials.
The content is provided "as is" and "as available," with all warranties disclaimed, express or implied, including merchantability, fitness for a particular purpose, accuracy, and non-infringement. No entry is warranted to be complete, current, or correct. Companies change, vendors update their claims, sources can be wrong, and automated analysis can misread them.
To the fullest extent permitted by law, the operator, Zeltser Security Corp, is not liable for any damages that arise from using this site or relying on its content, including direct, indirect, incidental, special, and consequential damages and lost profits, even if advised that such damages were possible. If you are dissatisfied with the site or disagree with these terms, your remedy is to stop using it.
Entries link to vendor pages, press coverage, and other external sites that Zeltser Security Corp does not control and is not responsible for. A link is not an affiliation with the destination or an endorsement of it. Product and company names and trademarks are the property of their owners, used here nominatively to identify the companies described. Short quotations from cited sources appear for identification and commentary.
Use, quotation, automated retrieval, and redistribution of the content are governed by the Terms of Use at cybercompanyprofiles.com/terms, which permit personal and internal business use with attribution and prohibit republication and resale.