Who this is for
External auditors who have been invited to access a customer’s Drata environment, and customer admins who want to understand the auditor experience.
How auditor access works
Your customer invites you from within Drata.
The invitation email contains a secure link to the Auditor Experience.
You only see the audits, evidence, and workspaces your customer has explicitly shared.
Accept your auditor invitation
Open the auditor invitation email you received from Drata.
Select the access or Get started link in the email.
This takes you to a dedicated auditor login page with auditor‑specific messaging.
Enter the email address where you received the invitation.
Follow the on‑screen prompts:
You may receive a verification code, or
You may be redirected to SSO if your firm uses SSO and your customer configured it that way.
After verification, Drata signs you into the Auditor Experience.
What you can do as an auditor
Your exact capabilities depend on how your customer configures access, but typically you can:
View assigned audits
Review control evidence and supporting documentation
Download evidence packages (zip files)
Communicate with your customer through audit‑specific messaging or comments
If your invite doesn’t work
Make sure you’re using the same email address that received the invitation.
If the link has expired or was already used:
Ask your customer contact to send a new invitation.
If you see an error after clicking the invite:
Capture a screenshot and the approximate time and timezone.
Share this with your customer so they can escalate to Drata Support if needed.
