Paths to client matter data
Correlate public exposure, identity edges, and findings into ranked paths that reach a store of privileged client data.
Trident maps the assets, identities, and data stores that hold privileged matter data, then correlates exposure and pentest findings into the paths that could reach a client file.
Capabilities
Map where privileged data lives and every path that could reach it. Each route is ranked by real risk and tied to a fix.
Correlate public exposure, identity edges, and findings into ranked paths that reach a store of privileged client data.
Inventory every data store and the identities that can reach it, then explore blast radius outward from any asset.
Pentests exercise broken access control and tenant isolation, so one client’s documents can’t bleed into another’s.
Track SOC 2 posture against the same graph, with each control gap tied to the path it actually opens.
Findings are prioritized by proximity to privileged data, so the shortest list reflects the highest real risk.
Each path ships its choke-point fix as a draft PR or copy-paste runbook. Every change is human-reviewed.
How it works
Attach read-only roles. Trident inventories assets, identities, and the stores that hold client data.
Data stores and the identities reaching them resolve into one queryable graph.
Exposure, identity, and pentest findings collapse into ranked paths to privileged data.
Each path ships its single choke-point fix to the team that owns it.
Outcomes
Stop chasing standalone alerts. Focus on the paths that actually reach privileged client data.
Matter-aware
Data-path context
Tenant-focused
Isolation testing
Evidence-led
Finding review
Retested
After remediation
Scope
One raw query bypassing the tenant scope applied everywhere else is the canonical defect in this sector.
Legal software holds material that is privileged, and a confidentiality failure between two clients is not merely a security incident — it can be a conflict of interest and an ethical exposure for the firm using the product. Trident concentrates on tenant isolation and document-level authorization: whether any request path lets one matter, firm, or client reach another’s material.
Frequently asked
With at least two accounts in genuinely separate tenants, exercising every route with identifiers belonging to the other. Single-tenant testing cannot detect cross-tenant flaws at all, which is why they survive so many engagements and are so often found later by a customer.
No. Testing uses synthetic matters and documents in test tenants. Proving that a cross-tenant path exists requires two test tenants, not privileged material, and introducing real client data would create risk without improving the finding.
Those are tested as an authorization control like any other: the question is whether the screen prevents retrieval through every path, or only removes material from the interface. Screens enforced at the presentation layer but not in the API are a recurring finding.
Yes. Scope, methodology, findings, remediation, and retest evidence covers most of what enterprise legal buyers ask for. Some require an independent assessor’s report as well, which is a separate engagement from testing.
Connect a read-only role and see the ranked paths to your privileged data through a read-only connection, with evidence for each path.