Application Security & Authorization Management
Main Offerings:
Feature Breakdown: Policy-as-code (Polar DSL), Local Authorization, Fallback/Offline Mode, SSO Support (OIDC), MCP Server Integration, Secure RAG for SQLAlchemy/pgvector, MongoDB and CSV Sync, Policy Testing and Watch Mode, Write Logs and Webhook Integration, Query Builder, TypeScript Type Generation (Departments: Engineering, DevOps, SRE, Platform Engineering, IT Security, Enterprise Architecture)
Business Industry Gearing: High - Designed for enterprises and growth-stage SaaS companies requiring complex authorization at scale
Certifications: No public evidence of SOC 2 certification as of October 2025, No public evidence of ISO 27001 or other major security certifications
Vendors/Tools: Not applicable - Oso is a security vendor itself
Risk Profile:
Aggregated Reviews: 3 reviews on G2 with positive ratings; limited review volume but high satisfaction scores
Adoption Insights:
Metrics: Not publicly disclosed; customer testimonials indicate high satisfaction and retention
Barriers: Requires developer expertise to implement; organizations with legacy monolithic architectures may need refactoring; learning curve for Polar DSL
Revenue Model: Usage-based SaaS subscription model with tiered pricing based on API requests per month
Pricing: Developer (Free, 100K requests/month), Pro ($149 per 1M requests), Enterprise ($249 per 1M requests with custom pricing) (Sources: https://www.osohq.com/pricing, https://www.saasworthy.com/product/oso-cloud/pricing, AWS Marketplace)
Market Context:
| Name | Description | X Account | |
|---|---|---|---|
| Graham Neray | Founder and Chief Executive Officer; previously at Techstars Hub71, Techstars, Amberdata, MongoDB, and Cartesian | https://www.linkedin.com/in/grahamneray | https://x.com/grahamneray |
| Not publicly disclosed | CTO and other executive team members' details require paid subscription access | Not available | Not available |
| Not publicly disclosed | Additional leadership team members not publicly available | Not available | Not available |
Key Metrics Update:
News/Trends:
Target Market: Enterprise and growth-stage SaaS companies, particularly those with microservices architectures and complex authorization requirements
Target Users & Personas: Developers, DevOps engineers, SRE teams, platform engineers, IT security teams, enterprise architects
User Experience Level: Intermediate to Advanced - Requires solid understanding of cloud architecture, microservices, and security concepts
Key Use Cases:
Measurable Outcomes:
Fit Assessment: Excellent fit for IT security and platform engineering teams at enterprises and growth-stage companies; strong product-market fit in cloud-native and microservices segments
Custom Rec Flags: