ThreatMap documentation
ThreatMap aggregates configured cyber-intelligence providers through REST and MCP. The portal provides lookup, graphs, projects, monitors, and account settings.
Guides
- Quickstart: account, API key, and both MCP transports
- API reference
- Execution, providers, and scoring
- Credits and plan limits
- Security controls and workflow status
- Integration options and enterprise scope
Before calling the API
Verify your email, create a key, and submit one IOC per lookup. Successful IOC/CVE searches cost one base credit. BYOK removes source surcharges, not the base search charge. Providers need applicable configured credentials.
These guides describe implemented behavior. Integration availability and deployment health depend on configuration; planned capabilities are labeled separately.