Intelligence overview
Operational picture
What needs attention now
Loading current workspace…
Threat outlook
What reporting trends suggest may come next
Trend-based analyst support — not a prediction or guarantee.
Threat stream
Recent intelligence
Auto-refreshing every 5 minutes
Data sources
Integration health
Case queue
Current investigations
Multi-model analyst agent
Ask the AI analyst
Choose a single analyst or a multi-model Council. Economy, Standard, Full and Adversarial modes compare independent opinions from OpenAI, Claude, DeepSeek, Mistral, Gemini and Qwen depending on the mode. Every mode is read-only — operational actions stay with you.
Prompts and investigation context submitted to the AI Analyst may be processed by configured third-party AI providers, including OpenAI, Anthropic, Google, or Cloudflare-hosted models. Do not submit PHI/HIPAA-regulated data, classified or CUI data, credentials, secrets, or confidential company/customer information unless your organization has approved the provider and applicable agreements and controls.
What should we look into?
Try one of these, or ask your own question.
Multi-source enrichment
Indicator lookup
IPs, domains, URLs, file hashes, email addresses and CVEs. Defanged input is fine. Every applicable source runs server-side; API keys never reach the browser.
Ready for analysis
Configured enrichment sources will appear here, followed by an optional evidence-based AI assessment.
Case management
Investigations
Indicator repository
IOC tracker
Analyst deliverables
Reports
Priority queue