Skip to main content

Access Drata as an auditor (New Experience)

Updated today

Who this is for

External auditors who have been invited to access a customer’s Drata environment, and customer admins who want to understand the auditor experience.

How auditor access works

  • Your customer invites you from within Drata.

  • The invitation email contains a secure link to the Auditor Experience.

  • You only see the audits, evidence, and workspaces your customer has explicitly shared.

Accept your auditor invitation

  1. Open the auditor invitation email you received from Drata.

  2. Select the access or Get started link in the email.

    • This takes you to a dedicated auditor login page with auditor‑specific messaging.

  3. Enter the email address where you received the invitation.

  4. Follow the on‑screen prompts:

    • You may receive a verification code, or

    • You may be redirected to SSO if your firm uses SSO and your customer configured it that way.

  5. After verification, Drata signs you into the Auditor Experience.

What you can do as an auditor

Your exact capabilities depend on how your customer configures access, but typically you can:

  • View assigned audits

  • Review control evidence and supporting documentation

  • Download evidence packages (zip files)

  • Communicate with your customer through audit‑specific messaging or comments

If your invite doesn’t work

  • Make sure you’re using the same email address that received the invitation.

  • If the link has expired or was already used:

    • Ask your customer contact to send a new invitation.

  • If you see an error after clicking the invite:

    • Capture a screenshot and the approximate time and timezone.

    • Share this with your customer so they can escalate to Drata Support if needed.

Did this answer your question?