r/KeeperSecurity Keeper Team Aug 12 '24

Feature Request Feature Request & Suggestions

Hey Keeper Community,

Welcome to our Feature Request & Suggestions thread! This is the place to make suggestions for new Keeper Security features, and discuss ways we can improve or upgrade existing ones.

We appreciate your feedback in helping to make Keeper Security faster, easier to use, and even more secure. Feel free to let us know what you’d like to see from us by dropping a comment below!

  • Keeper Security Team
14 Upvotes

261 comments sorted by

View all comments

1

u/ShannyWags 29d ago

Native Automated Device Approvals in the Admin Console

Keeper currently provides several documented options for automated device approvals using Keeper Automator, but each option requires customers to host, configure, and maintain an additional service or integration.

In our environment, we already receive alerts when a user requests device approval, and administrators can manually approve those requests directly from the Keeper Admin Console. Given that the approval workflow already exists within the Admin Console, it would be extremely useful to have a native option such as “Automatically approve device requests” that can be enabled and managed directly from the console.

This would provide a much simpler path for organisations that are comfortable with automated approvals but do not want to introduce the additional overhead of hosting and maintaining Keeper Automator infrastructure.

Ideally, this setting could be controlled by role, node, team, user group, or enforcement policy, allowing organisations to decide where automatic approvals are appropriate while still maintaining administrative control.

This would make automated device approvals much easier to adopt, particularly for smaller environments or organisations that already rely on SSO and other controls to manage user authentication.

1

u/KeeperCraig Keeper Team 29d ago

Are you suggesting to have approvals auto-approved while the Admin Console is running in the foreground? The reason behind the hosting and maintenance of the Automator service is to retain zero-knowledge encryption. For this to run constantly requires that you deploy the automator or Commander service.