C1 vs Lumos
ILM Reference editors · Editorial assessment · Published 2026-09-28
C1 scores higher overall on our weights: 63/100 against 62/100 for Lumos. C1 wins three of the seven criteria (disconnected-app coverage, certification campaign depth and pricing transparency) and Lumos wins three (orphan and local account discovery, JML automation and audit evidence); they tie on works alongside existing IdP and IGA. On disconnected-app coverage, the heaviest-weighted criterion, C1 leads 55 to 50.
Scores are an editorial assessment of public vendor material. See Editorial method.
How do C1 and Lumos score on each criterion?
| Criterion (weight) | C1 | Lumos | Winner |
|---|---|---|---|
| Disconnected-app coverage (22) | 55 | 50 | C1 |
| Orphan and local account discovery (18) | 60 | 62 | Lumos |
| JML automation (15) | 78 | 80 | Lumos |
| Certification campaign depth (12) | 75 | 72 | C1 |
| Audit evidence (13) | 65 | 70 | Lumos |
| Works alongside existing IdP and IGA (12) | 70 | 70 | Tie |
| Pricing transparency (8) | 30 | 20 | C1 |
| Lifecycle coverage score | 63 | 62 | C1 |
Read the reasons for each score
- Disconnected-app coverage
- C1: Baton open-source connectors and C1 Bridge for on-prem systems; apps with no connector are not described in detail.
- Lumos: Revocation described across local accounts, custom and on-prem apps; handling of apps with no API not detailed.
- Orphan and local account discovery
- C1: 'Find what offboarding missed', plus shadow app signup and login detection.
- Lumos: Identity analytics surfaces dormant accounts and shadow IT.
- JML automation
- C1: HR systems and directories trigger join, role change, leave and departure workflows.
- Lumos: HRIS-triggered joiner, mover and leaver workflows; leavers offboarded with licenses reclaimed.
- Certification campaign depth
- C1: Automated user access reviews as part of AI-native identity governance.
- Lumos: Agents scope reviews, certify straightforward items and prepare audit-ready documentation.
- Audit evidence
- C1: Records each offboarding action; framework evidence export not described.
- Lumos: Full audit trail of every grant and revocation.
- Works alongside existing IdP and IGA
- C1: Connects to existing IdPs and HR systems rather than replacing them.
- Lumos: Works across the IdP, HRIS, SaaS and cloud stack already in place.
- Pricing transparency
- C1: Publishes the pricing structure (Platform or Flex, Pro or Advanced, 1,000 to 20,000 identities) but no prices.
- Lumos: No public prices.
What does each tool do?
Identity governance with JML automation, access reviews and open-source Baton connectors, now branded C1.
Category Identity governance and administration (IGA)
Agent-driven identity governance with HRIS-triggered lifecycle, access reviews and identity analytics across 300+ integrations.
Category Identity governance and administration (IGA)
How do C1 and Lumos compare on pricing and deployment?
How do they handle disconnected applications?
| Tool | Discovery of the app | Account data collection | Leaver action on the app | Method described | Source |
|---|---|---|---|---|---|
| C1 | Partial shadow app signup and login detection | Partial Baton connectors, C1 Bridge for on-prem | Not documented for apps with no connector | Open-source connectors | Source: c1.ai · Reviewed Sep 2026 |
| Lumos | Partial shadow IT in identity analytics | Not documented | Partial revocation across local accounts, custom and on-prem apps | Integrations; no-API handling not detailed | Source: lumos.com lifecycle page · Reviewed Sep 2026 |
Source: c1.ai · Reviewed Sep 2026
Source: lumos.com lifecycle page · Reviewed Sep 2026
Which should you choose?
Choose C1 if you need coverage for applications with no connector, no SCIM endpoint and no SSO integration, or if you need a published price to model the budget before a sales call.
Identity governance with JML automation, access reviews and open-source Baton connectors, now branded C1.
Choose Lumos if you need audit evidence you can hand to auditors without rebuilding it each cycle, or if finding orphan, dormant and local accounts is the priority.
Agent-driven identity governance with HRIS-triggered lifecycle, access reviews and identity analytics across 300+ integrations.
Weights change the answer. Try your own in the calculator.
FAQ
Which is better for identity lifecycle management, C1 or Lumos?
On our rubric C1 scores 63/100 and Lumos 62/100. C1 is ahead mainly on disconnected-app coverage and pricing transparency. Buyers who weight audit evidence more heavily may prefer Lumos; the calculator shows how the order changes.
Which handles disconnected applications better, C1 or Lumos?
C1 scores 55 to 50 on disconnected-app coverage. C1: Baton open-source connectors and C1 Bridge for on-prem systems; apps with no connector are not described in detail. Lumos: Revocation described across local accounts, custom and on-prem apps; handling of apps with no API not detailed.
Do C1 and Lumos publish pricing?
C1: Structure published, prices scoped by quote. Lumos: Not published. Contact sales.
Keep reading
Sources
- c1.ai
- c1.ai lifecycle
- c1.ai shadow IT
- c1.ai pricing
- lumos.com
- lumos.com lifecycle management
- lumos.com identity analytics
- lumos.com pricing
Reviewed Sep 2026