LAIAOverview

Local-first · Read-only · Traceable

Analyze Active Directory. Locally. Clearly. Under control.

LAIA helps administrators and security professionals capture complex Active Directory environments in a structured way, evaluate technical anomalies traceably and present results clearly.

  • No automatic changes to your AD environment
  • No automatic transfer of customer data to cloud AI
  • No automatic update installation

Why LAIA?

Technical analysis instead of a black box

Active Directory environments often grow over many years. LAIA combines structured data collection, deterministic rules, technical evidence, local knowledge sources and optional local AI assistance without hiding the technical basis.

Read-only collection

AD objects and domain controller events are collected without automatically changing the customer environment.

Traceable checks

Findings can be traced back to rules, evidence, sources and the underlying data.

Local assistance

Local AI can support explanations, summaries and drafts, but does not independently decide objective security findings.

Who is LAIA for?

For operations, security and identity teams

AD administrators

Capture and assess complex objects, permissions and activity in a structured way.

Features

Security professionals

Use technical evidence, security events and traceable findings for reviews.

Security

IAM / Identity

Bring account types, groups, activity and identity context together more effectively.

Workflow

IT managers

Keep technical results and management-oriented outputs clearly separated.

Contact

MSPs & Consultants

Prepare repeatable and documentable assessment workflows for different customer environments.

Contact

Security & Privacy

Security boundaries are part of the architecture

LAIA is designed around local processing, controlled data collection and a clear separation between deterministic results and AI assistance.

  • Local-first analysis and data storage
  • Read-only data collection
  • No automatic cloud AI
  • No automatic remediation
  • No automatic update installation
  • Protection of secrets and sensitive data
Security architecture in detail
Traceability before automation

AI may explain technical results and create drafts. Critical statements still require reliable technical evidence.

Available features

Current feature set

Available

AD object analysis

Users, groups, computers, gMSA/MSA, OUs, ACLs, schema, trusts and deleted objects.

Available

Domain controller security events

Security, Directory Service and NTLM events from selected domain controllers.

Available

Login and event correlation

User activity can be correlated with imported AD and event data.

Available

Account-type classification

Rule-based identification of technical, administrative and other account types.

Available

Rules and findings

Traceable technical checks linked to evidence, rules and sources.

Available

Local knowledge

Controlled import of local knowledge packages with integrity and content validation.

Versions & Roadmap

What comes next?

Planned functions are deliberately separated from features that are available today.

Planned

PKI / Active Directory Certificate Services

Analysis of CAs, certificate templates, permissions and security-relevant PKI configuration.

Planned

DNS

Analysis of relevant DNS zones, settings and security-relevant anomalies.

Planned

DHCP

Structured collection and analysis of relevant DHCP configurations.

Planned

IPAM

Integration of IP Address Management into infrastructure and security analysis.

Contact

Questions about LAIA?

For questions about the project or potential testing, contact us directly by email.