Montro

Every tool your organization uses discovered automatically

Montro connects read-only to your identity provider — no agents, no manual imports, no guesswork. We see what's actually running, map it against GDPR and the EU AI Act, and keep your register current as new applications appear.

Montro connected to Slack, Outlook, GitHub, OpenAI, Loom, Gmail, HubSpot, and Microsoft 365

Live integrations

Every app is mapped against GDPR, EU AI Act, DORA, and NIS2

CRM & Sales Tools

Apollo

Apollo processes contact data belonging to people who have never heard of your organisation. Connect Apollo to Montro to see who on your team has access to that data - and govern it before your DPO asks why it is not in your GDPR inventory.

GDPR · EU AI Act · NIS2 · ISO 27001

Cloud Infrastructure

AWS

Most organisations know what SaaS tools they use. Far fewer know what is actually running in their AWS account. Connect AWS to Montro to bring cloud infrastructure - users, resources, services, and policies - into the same governed view as the rest of your application estate.

GDPR · EU AI Act · DORA · NIS2 · ISO 27001

Project & Knowledge Management

Confluence

Confluence is where your organisation documents the things it would least want exposed - security policies, incident reports, HR processes, client project data. Connect Confluence to Montro to govern who can read it.

GDPR · EU AI Act · DORA · NIS2 · ISO 27001

CRM & Sales Tools

HubSpot

HubSpot holds your customers' contact records, email history, and deal data - and not everyone with access to it should still have it. Connect HubSpot to Montro to see exactly who can reach your CRM and govern that access against your GDPR and compliance obligations.

GDPR · EU AI Act · DORA · NIS2 · ISO 27001

Identity & Access Management

Microsoft Entra ID

Microsoft Entra ID is the identity backbone of your Microsoft environment. Connect it to Montro and bring your entire directory - users, roles, licences, MFA status, and application access - into a single governed view alongside your wider SaaS and AI estate.

GDPR · EU AI Act · DORA · NIS2 · ISO 27001

Collaboration & Messaging

Microsoft Teams

Microsoft Teams is central to how your organisation communicates - and often overlooked in access reviews. Montro imports Teams users and licences so your collaboration platform is as governed as everything else in your estate.

GDPR · EU AI Act · DORA · NIS2 · ISO 27001

Identity & Access Management

Okta

Okta controls who gets into everything else. Without it in your governed inventory, your compliance picture has a gap at the foundation. Montro connects Okta identity data to your full application estate.

GDPR · EU AI Act · DORA · NIS2 · ISO 27001

Collaboration & Messaging

Slack

Slack is where work happens, and where ungoverned access accumulates. Guest accounts, inactive seats, and users added outside your identity provider all show up when Montro connects to your workspace.

GDPR · EU AI Act · DORA · NIS2

AI Platforms

Open AI

Most organisations using OpenAI have no visibility into who holds access, how many seats are active, or whether usage is documented against EU AI Act obligations. Montro surfaces all of it.

GDPR · EU AI Act · DORA · NIS2

Project & Knowledge Management

Jira

Jira accounts are where contractors, agencies, and external collaborators often live - outside your identity provider, outside your offboarding process, and outside your compliance picture. Connect Jira to Montro to bring them in.

GDPR · EU AI Act · DORA · NIS2 · ISO 27001

Collaboration & Messaging

ZOOM

Zoom accounts grow quietly - provisioned outside your identity provider, renewed without IT review, and rarely audited. Montro discovers every user and licence in your Zoom environment and maps it against your EU compliance obligations.

GDPR · EU AI Act · DORA · NIS2

Method

How we find everything

Four independent data sources. Zero guesswork. Real visibility.

Layer one

Identity provider logs show active logins

We read your Azure AD or Okta directly to see who accessed what.

Next

Layer two

Direct app integrations capture live usage

Native connectors to your SaaS stack reveal real-time activity and user counts.

Next

Layer three

Browser extensions detect shadow applications

We see what your team actually uses, including apps never registered with IT.

Next

Layer four

Financial signals expose hidden subscriptions

We scan expense reports and credit card statements for SaaS charges you might have missed.

Done

Request

Missing an integration

We prioritise integrations based on demand from organisations like yours

Questions

Technical questions about discovery, integrations, and compliance mapping answered directly.

We use four independent discovery layers: identity provider logs show official logins, direct app integrations capture live usage, browser extensions detect what teams actually use, and financial signals expose hidden subscriptions. Most organisations discover 30-40% more applications than they knew existed.