Smallstep

Smallstep ensures that only trusted, company-owned devices can access an organization's most sensitive resources. The first device identity platform uses hardware-bound credentials via ACME Device Attestation (ACME DA) to provide the strongest possible guarantee of authentic device identity. This prevents credential exfiltration, phishing, and impersonation attacks. It integrates with major MDM, IdP, and device posture platforms and can protect a wide range of resources: including Wi-Fi and VPN networks, ZTNA, public SaaS apps, internal web apps, cloud services, cloud APIs, and Git repos. The platform supports multiple operating systems, including Windows and Linux, with integrations for VPNs, ZTNAs, CASBs, and identity providers as well. The platform is designed to work with existing infrastructure to enhance security and streamline management, ensuring that only trusted devices can access sensitive systems by filling gaps.

Why Smallstep?

Smallstep’s Device Identity Platform™ ensures that only trusted company devices can access an organization's most sensitive resources. The platform is the only solution of its kind, using hardware-bound credentials via a new standard called ACME Device Attestation (ACME DA) that was developed with Apple and Google. This provides the strongest possible guarantee of authentic device identity, preventing credential exfiltration, phishing, and impersonation attacks. The Device Identity Platform™ can protect a wide range of resources, including Wi-Fi and VPN networks, ZTNA, public SaaS apps, internal web apps, cloud services, cloud APIs, and Git repositories. By using hardware co-processors for attestation and key binding, Smallstep offers a comprehensive solution for device security that supports multiple operating systems, including Windows and Linux.