Threat intel · in your pocket

Know which CVE is on fire — before it reaches you.

Radark watches every new vulnerability, keeps only the ones that hit your stack, and ranks them by what's actually being exploited. Delivered to Telegram, Slack, or a webhook.

NVD · CVE feed CISA KEV · exploited EPSS · exploit odds GitHub · OSS deps
Why it's different

Signal, not a firehose.

The NVD publishes dozens of CVEs a day. You care about a handful. Radark does the filtering and the prioritization for you.

🎯

Matched to your stack

Tell it your tech — kubernetes, nginx, postgres, log4j — and only relevant CVEs get through.

🔴

Ranked by real risk

Sorted by CISA KEV (actively exploited) → EPSS (exploit probability) → CVSS. What's on fire rises to the top.

Where you already work

Realtime to Telegram, or push to Slack and generic webhooks. A daily digest if you prefer calm.

🛰️

Auto attack-surface scans

Continuous, non-intrusive assessment of assets you own and verify — TLS, headers, exposures, templated checks.

📦

Dependency intelligence

Connect a repo once — version-precise CVEs on your composer/npm/pip/go lockfiles via OSV. Private packages excluded.

See the output

Boardroom-ready security reports.

Every scan produces a shareable report mapped to PCI DSS · OWASP · MITRE ATT&CK · NIST CSF — with a risk score, step-by-step remediation, drift since the last scan, and posture over time.

app.radark.io/r/ · External Security Assessment
api.acme-corp.com
Assessed 21 Aug 2026, 18:41 UTC · external, non-intrusive
76
Grade B
0
Critical
1
High
1
Medium
1
Low
🆕 1 new exposure appeared 2 resolved since last scan
Posture over time · 5 scans · trending up
SevFindingFramework refs
HIGH HSTS not enforcedNEW
Strict-Transport-Security header missing
PCI 4.2.1
ATT&CK T1557
NIST PR.DS-2
MED Content-Security-Policy missing
No XSS mitigation policy served
PCI 6.4.3
ATT&CK T1059.007
NIST PR.PT-3
LOW Server version disclosed
nginx/1.25.3 in response headers
PCI 2.2.1
ATT&CK T1592
NIST PR.IP-1
Shareable HTML report · one link, print-to-PDF, framework-mapped
🛡️RadarkPRO
7 / 9
technologies watched
2 domains verified ✓
kubernetes ✓nginx ✓ postgres ✓redis ✓ rabbitmq ✕kafka ✕
🚨 Exposure changed — api.acme-corp.com
Score 76/100 (grade B)
🆕 1 new · ✅ 2 resolved since last scan
📄 Open full report ↗
Mini App · coverage dashboard + drift alerts
New · hands-off

Your dependencies, watched at the version level.

Connect a repo once. Radark reads your lockfiles and alerts only on CVEs affecting the exact versions you ship — powered by OSV. Private packages are excluded; only manifest metadata is read, never your source.

app.radark.io › connect repository
Repository
git.acme.io/payments/api
✓ composer.lock 142 deps
✓ package-lock.json 318 deps
⨯ 6 private packages excluded
Connect GitLab / GitHub once — auto-synced twice a day
dependency risk report
Dependency risk
460 deps · OSV · version-precise
7
Vulnerable
PackageInstalledSevFixed in
lodash
npm
4.17.11CRIT4.17.12
guzzlehttp/guzzle
composer
6.5.0HIGH6.5.8
symfony/http-kernel
composer
4.4.0HIGH4.4.13
Version-precise — zero noise from versions you don't run
Live in 30 seconds

How it works

1

Tell it your stack

/watch kubernetes nginx postgres — or tap it in the Mini App with autocomplete.

2

It watches everything

NVD, CISA KEV, GitHub Advisories and EPSS, checked continuously.

3

You get only what matters

Ranked alerts, de-duplicated, with the patch link. No noise, no digging.

Pricing

Start free. Scale when it earns it.

Cancel anytime. Attack-surface scans run only on assets you own and verify by DNS.

Free
€0
For individuals keeping an eye on a few technologies.
  • Up to 3 keywords
  • Realtime CVE + KEV alerts
  • Telegram delivery
  • Slack / webhook
  • Attack-surface scans
Start free
Most popular
Pro
€29/mo
For engineers and small teams who ship on a real stack.
  • Unlimited keywords
  • Slack + webhook delivery
  • Daily digest mode
  • EPSS-priority ranking
  • Priority feed refresh
Go Pro
Autopilot
€149/mo
For small companies who want continuous, hands-off security.
  • Everything in Pro
  • Weekly automated assessment
  • Verified-asset scanning
  • Drift alerts & posture trend
  • Framework-mapped reports & history
Get Autopilot
Stop reading the NVD by hand

Your stack, watched 24/7.

Set it up in half a minute. First relevant alert lands today.

🛡️ Open Radark in Telegram