Skip to content

1Security

AI-native permission manager for Microsoft 365 that maps who and what — including Copilot and other AI tools — can access which data, and automates policy enforcement to close oversharing gaps.

Visit Website ↗ + Add to Compare
52/100Incremental Innovator

Overview

1Security builds a permission-management platform for Microsoft 365 environments, giving IT and security teams tenant-wide visibility into which users, third-party apps, and AI tools (including Microsoft Copilot) can reach which files and data. The core problem it targets is oversharing that accumulates silently over years of ad-hoc SharePoint and OneDrive permissions — a risk that becomes acute the moment an organization turns on an AI assistant that can now surface any file a user technically has access to, whether or not that access still makes sense.

Founded in 2023 in Lodz, Poland by Adam Zaczek and Mateusz Olek, the company raised early capital including a $500K investment from Sunfish Partners and backing from Digital Ocean Ventures, and publicly launched its permission-management platform in 2025. The product maps access relationships, flags risk-based exposure, and applies automated policy enforcement to curb oversharing before it becomes a breach or an AI-assisted data-exposure incident.

As a very early-stage company, 1Security has limited public track record: no named enterprise case studies, independent audits, or third-party evaluations were found. Its relevance is tied closely to how fast enterprises roll out generative AI copilots inside Microsoft 365 and how urgently they need to control what those copilots can see.

Innovation Matrix Assessment

Innovation Velocity 6/10

Moved from founding (2023) to a publicly launched permission-management platform (2025) in roughly two years, a reasonably fast pace for a small early-stage team.

Operational Value 4/10

The product only publicly launched in 2025; no evidence yet of operation at meaningful scale or across large, complex Microsoft 365 tenants.

Market Momentum 3/10

Disclosed funding so far is modest (a $500K round from Sunfish Partners plus Digital Ocean Ventures participation), consistent with a pre-seed/seed-stage company still building initial traction.

Category Disruption 7/10

Directly addresses a fast-emerging, underserved risk: generative AI copilots inheriting years of accumulated, unreviewed file-sharing permissions, which is a genuinely new attack surface rather than a repackaged access-review tool.

Real-World Efficacy 3/10

No independent evaluations, named customer deployments, or audit results were found; as a company barely a year past public launch, evidence of real-world detection or remediation effectiveness is not yet available.

Enduring Relevance 8/10

Enterprise Copilot rollout is accelerating rapidly, and permission sprawl in Microsoft 365 is a well-documented, widespread problem, making AI-aware permission management a timely and increasingly necessary control.

Why CISOs Should Care

Gives visibility into what Copilot and other AI tools can actually reach across Microsoft 365, closing a gap that traditional DLP and access-review tools were not built to cover.

What Makes It Different

Purpose-built for the AI-permissions problem specifically, rather than a general access-governance tool retrofitted to mention AI.

The Matrix Verdict

52/100 — INCREMENTAL INNOVATOR

A timely, narrowly-focused idea addressing a real and growing risk, but still too early-stage to have independent proof of effectiveness at scale.

Editorial Note: Claims vs. Verified Findings

Founding details, the Sunfish Partners investment, and the 2025 platform launch are independently reported by trade outlets (Vestbee, AIN.ua, Wolves Summit). No vendor performance claims (e.g., detection accuracy, risk-reduction percentages) were found publicly to independently verify or flag as unverified.

Sources