Platform

Branded User Portal

Identity governance touches every employee, yet the tools are built for IT. A whitelabelled portal for reviews, privileged access, delegated support, and provisioning, so every interaction feels like your own.

Your Brand, Their Trust

Custodeum's User Portal is a cut-down, purpose-built interface designed exclusively for end users and their managers. It carries your organization's logo, colours, and domain, so every interaction, from campaign reviews to ticket updates, feels like a natural extension of your own tooling rather than an unknown third-party system.

Every email notification sent to end users (review reminders, approval outcomes, ticket updates) is fully branded to match. This consistency builds the trust and familiarity that drives higher participation rates and faster response times across your governance programs.

Branded email
User portal
Task complete
Whitelabelled
Branded portal experience
Reviews
PIM
Provisioning
Support
Campaign Reviews

End users and managers complete access certification with Access Context risk signals and one-click approve, revoke, flag, or delegate.

  • Access Context badges inline
  • Same experience in Microsoft Teams
  • Require reviewer comments policy
Privileged Access Self-Service

Request and manage elevated access without calling the service desk. Submit, track, approve, and extend time-limited grants.

  • My PIM Requests, Approvals, and Status
  • Ticketing integration
  • Eligible roles only in picker
My Users: Delegated Support

Business owners and support groups perform scoped lifecycle actions on users they own or are granted with deny-by-default execution.

  • Password reset, suspend, MFA, group/app membership
  • Support group SCIM delegation
  • Ticket-gated actions with ServiceNow mapping
My Provisioning

Template-driven user and group creation for teams that should not wait on IT, separate from My Users lifecycle support.

  • Create user and group from assigned templates
  • Business-owner group membership management
  • Read-only provisioning history
Guided Workflows

Interactive question-and-answer playbooks for ticket creation, connector lookups, and approvals, assigned per user or group.

  • Runs in portal, Teams, and support console
  • Contextual launch with subject pre-filled
  • Only visible when workflows are assigned
Transparency & Ownership

My Access, My Apps, My Team, Owned Apps, My Vault, and My Tickets. Each module independently toggled in Management → Features.

  • Cross-system entitlement summary
  • App owner workspace with usage modelling
  • Password vault checkout for granted accounts

Extensible by Design

Every module is independently toggled in Management → Features. Disabled features disappear from navigation. Standard users land in the portal automatically; admins can choose Auto, Admin, or My Work as their preferred landing page. Also available in the Microsoft Teams Self-Service Request Hub.

Campaign Reviews
PIM Self-Service
My Users
My Provisioning
Guided Workflows
Owned Apps
My Vault
My Tickets
My Access

Each module independently toggled in Management → Features. Disabled modules disappear from navigation.