Deepfence ThreatMapper
Input—per 1M tokens
Output—per 1M tokens
Context—tokens
WeightsClosed
About
Deepfence ThreatMapper is ranked #2 of 24 in container security software on Inferse. It runs on API, Linux, Self-hosted, Web, Windows. There is a free plan.
Compared on container security software
- Free plan
- Yesthreatmapper.org
- Image scanning
- Yesthreatmapper.org
- Runtime protection
- Yesthreatmapper.org
- Kubernetes security
- Yesthreatmapper.org
- Registry scanning
- Yesthreatmapper.org
- SBOM generation
- Yesthreatmapper.org
- Deployment model
- self_hostedthreatmapper.org
Facts
- Purpose
- ThreatMapper hunts for hidden threats in production platforms and ranks them by risk of exploit.threatmapper.org · 30 Sept 2026
- Workload discovery
- It scans platforms to identify pods, containers, applications and infrastructure and maps their topology and attack surface.threatmapper.org · 30 Sept 2026
- SBOM vulnerability scanning
- It generates runtime SBOMs for running pods, containers, serverless apps, applications and operating systems and matches them against multiple vulnerability feeds.threatmapper.org · 30 Sept 2026
- Secret detection
- It detects exposed keys, tokens and passwords in containers and host filesystems.threatmapper.org · 30 Sept 2026
- Compliance
- It evaluates infrastructure configuration against CIS, PCI-DSS, HIPAA and other compliance benchmarks.threatmapper.org · 30 Sept 2026
- Threat Graph
- The Threat Graph correlates vulnerabilities, secrets and compliance issues with live and recent network flows, security groups and live status.threatmapper.org · 30 Sept 2026
- Management console
- The standalone management console runs as containers on a Docker host or dedicated Kubernetes cluster and exposes HTTPS administration and API automation.threatmapper.org · 30 Sept 2026
- Integrations
- Documented integrations include Slack, PagerDuty, Jira, Splunk, ELK, Sumo Logic and AWS S3.threatmapper.org · 30 Sept 2026
- CI/CD
- Image-build scanning supports CircleCI, Jenkins and GitLab.threatmapper.org · 30 Sept 2026
- Sensor security
- Sensor agents communicate with the management console over TLS using a URL and API key.threatmapper.org · 30 Sept 2026
- Deployment scope
- A single console can manage multiple workload types and on-premise and cloud deployments simultaneously.threatmapper.org · 30 Sept 2026
- Sensor requirements
- Sensor requirements include 0.2 CPU cores, 200 MB to 1 GB RAM, Linux kernel version 4.4 or newer and access to console port 443.threatmapper.org · 30 Sept 2026
- Windows support
- Windows Server support is experimental and not suitable for production use.threatmapper.org · 30 Sept 2026
- Cloud scanning
- Cloud Scanner tasks run locally through Terraform modules, use typically read-only cloud API access and do not listen for remote connections or control.threatmapper.org · 30 Sept 2026
- License and support
- The ThreatMapper project is offered under the Apache 2 license, with GitHub issues and a Deepfence Community Slack channel available for support.github.com · 30 Sept 2026
Best Deepfence ThreatMapper alternatives
See all 12
7.4 Snyk Open Source $25/mo first paid tier Free plan
7.3 Kubescape Free free plan, no paid price published Free plan
6.9 Sysdig Secure See plans price on the maker's page
6.8 Qualys External Attack Surface Management See plans price on the maker's page Free trial
6.7 Google Artifact Analysis See plans price on the maker's page
6.0 Docker Desktop $9/mo first paid tier Free plan Where it ranks on Inferse
Sources
- threatmapper.org/threatmapper/docs/· checked 30 Sept 2026
- threatmapper.org/threatmapper/docs/architecture/console/· checked 30 Sept 2026
- threatmapper.org/threatmapper/docs/architecture/threatgr· checked 30 Sept 2026
- threatmapper.org/threatmapper/docs/sensors/· checked 30 Sept 2026
- threatmapper.org/threatmapper/docs/architecture/cloudsca· checked 30 Sept 2026
- github.com/deepfence/ThreatMapper· checked 30 Sept 2026
- threatmapper.org· checked 30 Sept 2026




