> For the complete documentation index, see [llms.txt](https://docs.p0.dev/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.p0.dev/readme/access-inventory.md).

# Access inventory

Discover production assets, identities, and access risks across AWS, Google Cloud, Kubernetes, Okta, and Google Workspace with P0's access inventory.

Use P0's access inventory to view your production assets, all the identities that can access them, and associated access risks.

*IAM assessment is currently available for AWS, Google Cloud, Kubernetes, Okta, and Google Workspace.*

### Features

* Combines IAM data from disparate sources, including your identity provider, your IAM policies, and your cloud access logs
* Evaluates issues based on risks of individual privileges, using P0's comprehensive open-source [IAM Privilege Catalog](https://catalog.p0.dev)
* Detects lateral movement across identities and clouds

### How it works in P0

P0 connects to your IAM systems, reading your configuration.

<div data-full-width="false"><figure><img src="https://3783273641-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FSQNwGQz62W737pY0FzVb%2Fuploads%2Fgit-blob-ac1d27ae9b3f9a294299a8c943e5415df0c16a5d%2Fimage.png?alt=media" alt="P0 data collection progress indicator showing Collecting Data at 3% while fetching IAM policy data" width="375"><figcaption></figcaption></figure></div>

P0 builds a complete end-to-end access graph for your environment:

<figure><img src="https://3783273641-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FSQNwGQz62W737pY0FzVb%2Fuploads%2Fgit-blob-d6a917e2433a01b52b8c4553ac2b8594fb148090%2FScreenshot%202025-04-28%20at%202.35.20%20PM.png?alt=media" alt="Access inventory graph visualization showing identities, entitlements, and resources connected by lateral movement paths" width="563"><figcaption></figcaption></figure>

You can query your access graph to find sensitive access to specific resources, specific risks, or more:

<figure><img src="https://3783273641-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FSQNwGQz62W737pY0FzVb%2Fuploads%2Fgit-blob-384c1915bf45f04936bbd127bbe0d1f0be3d93af%2Fimage.png?alt=media" alt="Inventory query results table filtered by storage exfiltration risk showing principals, roles, and affected resources" width="563"><figcaption></figcaption></figure>

### Related documentation

* [Access inventory details](/inventory/access-inventory.md): Search your inventory, view asset lists, and explore the access graph
* [Query search](/inventory/query-search.md): Write queries to find specific identities, entitlements, and resources
* [Posture overview](/posture/posture-overview.md): See access-vulnerability findings detected from your inventory data

### Get started with P0's access inventory

Getting set up and collecting your organization's inventory takes about 15 minutes.

1. Sign up for a P0 account at [p0.app/create-account](https://p0.app/create-account).
2. Follow the instructions in [Creating an environment](/environments/creating-an-environment.md).
3. For a complete walkthrough, see the [Explore who has access to what with Access Inventory](/getting-started/getting-started-with-access-inventory.md) guide.
