ThreatWatch

Input—per 1M tokens
Output—per 1M tokens
Context—tokens
WeightsClosed

About

ThreatWatch is ranked #13 of 29 in security ratings software on Inferse. It runs on Web. There is a free plan. A free trial is offered.

Compared on security ratings software

Free plan
Yesthreat.watch
Vendor monitoring
Yesthreat.watch
Attack surface coverage
full attack surfacethreat.watch
Change alerts
Yesthreat.watch
API access
Yesthreat.watch
Risk frameworks
ISO 27001, SOC 2, PCI DSS, HIPAA, GDPR, NIST CSF 2.0, NIST 800-53, CSA CCM, DORA, NIS2, ISO 42001, EU AI Act, EU Cyber Resilience Actthreat.watch

Facts

Product
ThreatWatch is a third-party risk intelligence platform for continuously monitoring vendors.threat.watch · 1 Oct 2026
Monitoring
It monitors vendor breaches, dark-web exposure, attack-surface vulnerabilities, and compliance gaps.threat.watch · 1 Oct 2026
Risk grade
Each vendor receives an A-to-F grade built from threat intelligence, security scanning, questionnaire responses, and certifications.threat.watch · 1 Oct 2026
Passive scanning
The free scan is outside-in and passive, requires no signup or credit card, and returns a grade in about 30 seconds.threat.watch · 1 Oct 2026
Vendor catalogue
The platform includes a catalogue of 280,770 companies searchable by name, domain, or alias.threat.watch · 1 Oct 2026
Dark-web cadence
Vendor staff devices are re-checked hourly and leaked credentials are re-checked daily.threat.watch · 1 Oct 2026
Vulnerability matching
ThreatWatch confirms vendor vulnerabilities only when it can read the exact software version, and vulnerability matching is included on every plan.threat.watch · 1 Oct 2026
Integrations
Outbound alerts can be delivered to Slack, Microsoft Teams, Jira, ServiceNow, PagerDuty, email, the app, or a generic webhook.threat.watch · 1 Oct 2026
AI approval
The AI Co-Pilot and Ask AI are available from Professional and above, and proposed changes require human approval.threat.watch · 1 Oct 2026
Compliance frameworks
Compliance AI supports PCI-DSS, ISO 27001, SOC 2, HIPAA, GDPR, and NIST CSF questionnaires, plus custom frameworks.threat.watch · 1 Oct 2026
Security controls
Traffic uses TLS with one year of preloaded HSTS, while secrets such as API keys, SSO secrets, and integration credentials are encrypted at field level at rest.threat.watch · 1 Oct 2026
Vendor access
Vendors use a one-time code sent to their email rather than creating an account or password.threat.watch · 1 Oct 2026
Import limitation
Imported vendors are not scanned when the file is uploaded; they wait for the first scan in the plan schedule.threat.watch · 1 Oct 2026

Best ThreatWatch alternatives

See all 12

Where it ranks on Inferse

Sources