Stage 1 · Foundry

Your tools stay.
We just listen.

Connect your existing security stack in days. Read-only. Nothing changes in your environment.

Exhibit 1 — External Posture

See what attackers see.

We probe your external posture — SPF, DMARC, DKIM, security headers, certificate transparency, DNSSEC — before you share a single credential.

DNS & Email Auth

SPF, DMARC, DKIM validation across all sending domains

Security Headers

CSP, HSTS, X-Frame-Options, Referrer-Policy and more

Certificate Transparency

CT log monitoring, expiry tracking, rogue certificate detection

Exhibit 2 — Internal Telemetry

50+ connectors. One API layer.

Drop in an API key, OAuth token, or webhook URL. We normalise everything into a unified security model. Live in under a week.

SIEM EDR Firewall Identity Cloud GRC
50+
Native connectors
< 1 week
Average go-live
AU
Data residency

Read-only. No agents installed. No network changes.

API keys and OAuth tokens only

Your data stays in Sydney (ap-southeast-2)

We read. We never write.