supply chain intelligence

Trace every connection back to your core.

Every tool on the market starts with the assets and suppliers you know. ThingsRecon maps the hidden dependencies between them and continuously measures their Digital Proximity to your critical systems.

The question every CISO asks when something breaks in the news: “Am I affected?”

ThingsRecon answers it in minutes, because italreadyhas your supply chain mapped. The coverage exists before the incident does.

Summarize how ThingsRecon helps security and compliance teams reduce risk across the supply chain.

the problem

TPRM scores vendors.
EASM maps your perimeter.
Neither shows the path between them.

Risk lives in the connections no one documented: the digital threads running from a compromised supplier directly into your infrastructure. Every existing tool starts from what you already know. None of them find what you don't.

Supply Chain
Intelligence

how it works

Three steps from unknown exposure
to confident decision.

Start with agentless discovery across your footprint: domains, IPs, APIs, shadow infrastructure, and every supplier connection attached to them. Layer in Digital Proximity (Patent Pending) to measure how close each risk sits to your core systems. Add AI-driven business, financial, and geopolitical context signals. The result is a ranked picture of real risk, not a list of vendor ratings.

01 | discover
Agentless discovery at scale

ThingsRecon scans from the outside in. It finds domains, IPs, APIs, shadow applications, and supplier connections, consistently uncovering 3x more active connections than appear on any official vendor list.

02 | map
Digital Proximity & enrichment

Every discovered connection gets a proximity measurement. Suppliers embedded deep in your infrastructure score higher, so instead of a flat vendor list, you get a topology that reflects how an attacker would actually move.

03 | Prioritize
AI-powered contextual intelligence

150+ signals per supplier node across technical, business, financial, and geopolitical. AI correlates live exposure with that context continuously, so when a supplier is breached, you know within minutes how it touches you.

Supplier Map
47 suppliers discovered
Supplier
Score
Proximity
Status
Findings
cloudflare-vendor-api.net
Discovered · Not in register
F
2 hops
Critical
14 findings
sap-logistics-eu.com
ERP integration · Tier 1
C
4 hops
Review
7 findings
okta-sso.thirdparty.io
Auth provider · SSO
B
6 hops
Monitored
3 findings
analytics-pixel.vendor.co
4th party · Auto-detected
D
3 hops
Unregistered
9 findings
aws-s3-backup-eu-west.com
Cloud storage · Tier 2
A
9 hops
Monitored
1 finding
5 of 47 results

platform

A living map of your supply chain.

No manual input, no vendor register upload. Every connection we surface gets a risk score, a proximity rating, and a full inventory.

Risk score A–F based on actual technical findings, not questionnaire responses
Digital Proximity (patent pending) shows topological distance to your critical systems
Smart findings classified as classic rule-based or AI-assisted, with full evidence
Continuous monitoring triggers alerts when new assets appear, supplier risk changes, or previously remediated issues re-emerge

Digital Proximity

The closer the supplier, the bigger the risk.

Every other tool asks: how secure is this vendor? We ask: how deep do they reach? A vendor with a B score sitting two hops from your core systems is more dangerous than an F-scored vendor with no digital path to anything critical. Proximity is the measure that matters when an incident happens.

Topological distance: how many digital hops from any supplier to your core systems
Covers registered suppliers and the ones ThingsRecon discovers that no one added to a list
Continuous assessment, not point-in-time, not a monthly report
Aligned with DORA, NIS2, and SEC disclosure requirements
Digital Proximity Map
7 connected nodes
High proximity
1 to 2 hops
Medium proximity
3 to 5 hops
Low or unknown
Unverified path

Intelligence layer

AI that tells you what it means, not just what it found.

Traditional platforms surface data. ThingsRecons AI layer turns that data into answers correlating 150+ signals in real time so your team doesnt spend days figuring out if an incident affects them.

Two types of findings: classic rule-based detections (misconfigured DNS, expired certificates, weak TLS) and smart AI-assisted findings that add business context ownership changes, geopolitical exposure, sanctions signals, financial distress.

Proprietary intelligence AI-supported

The AI intelligence layer is supported by 150+ signals. It adds the context that explains what technical findings actually mean for your organisation not a replacement for the scan, a layer on top of it.

Conversational Intelligence

A mind that thinks with your data.

Most platforms show you a dashboard and leave you to interpret it. ThingsRecon lets you talk to your supply chain data directly. Ask questions in plain language and get answers drawn from your live supplier map, into a simple chat.

SK
Ask Steph
Supply chain intelligence · Live discovery data
Live
SK
Ask Steph
Morning. There's a confirmed breach on Netskope flagged 2 hours ago. You have active connections. Want me to map your exposure now?
You
Yes, how am I connected to Netskope? What's the real exposure?
SK
Found 14 active connections between your environment and Netskope. Here's what matters:
Proximity score
87 · High
Shared certificates
3 active
API endpoints linked
5 endpoints
Last scan
4 hours ago
You
What do I need to do right now?
SK
Given the proximity score, three things need to move today:
Audit the 5 API endpoints
Urgent
Review shared certificate scope
Today
Brief your incident team
Today
Export full report Show all connections Map blast radius
SK

Questions your data can actually answer

Ask questions like Which of my suppliers have open vulnerabilities right now? or How exposed am I to this news event? and get answers grounded in your live supply chain data not a generic AI response.

Proactive monitoring and remediation

ThingsRecon doesnt wait for you to ask. When a relevant incident breaks, it surfaces affected suppliers automatically and tells you the blast radius before youve even opened the platform.

Interprets, prioritizes, recommends

Not just data retrieval the AI layer interprets findings, ranks them by actual risk impact, and recommends the next best action. So your team acts on what matters, not everything at once.

integrations

Where supply chain intelligence
meets your security stack.

Plug discovery intelligence directly into the tools your team already uses via API, webhook, or native integration.

We were surprised by the level of ‘things’ discovered—far greater than any other solution we have used or tested.

ThingsRecon helps Northumbria NHS focus our security approach based on evidenced exposure. And they have worked with our team really closely to quickly prioritise and address our most important exposures.

Simon Sleightholm

Information Assurance & Security Manager

|

Northumbria Healthcare

Built by practitioners. Proven in the field.

NHS company logo
Sicredi company logo
Rootshell Security company logo
Scunna company logo
Kroll company logo
NHS company logo
Sicredi company logo
Rootshell Security company logo
Scunna company logo
Kroll company logo
use cases

If your team does any of these,
ThingsRecon is for you.

New Supplier Onboarding

Certifications, breach history, attack surface, data residency, assessed in minutes, not weeks. Pre-fill ServiceNow risk cases automatically.

Existing Supplier Monitoring

Continuous drift detection: new subdomains, expired TLS, vulnerable components, shadow IT. Alerts fire when risk posture changes.

Unknown Supplier Discovery

Find the vendors you don't know about, APIs, SaaS, agencies interacting with your systems. Typically 2-5x more than documented.

M&A Due Diligence

Outside-in target hygiene snapshot: legacy tech, exposed data, vendor inheritance, financial red flags, adverse news, before you sign.

Breach & Incident Response

Identify impacted systems and exposed entry points. Locate forgotten assets, stale DNS, exposed admin panels. Contain fast with evidence.

Regulatory Compliance

NIS2, DORA, AI Act, continuous evidence of supply chain security posture. Defensible, audit-ready reporting for boards and regulators.

thingsrecon scale

The attack surface doesn't stop at your perimeter. Neither do we.

500,000

+

Internet-facing applications mapped

300

Organizations onboarded
to full visibility

12

Countries in active
CNI programs

150

+

Intelligence signals
per supplier node

GLOBAL INTELLIGENCE

Some attack surfaces are the size of a country.

Critical infrastructure operates at national scale. Its exposure has to be measured the same way. ThingsRecon works with governments and national agencies to map supplier risk across entire sectors — energy, finance, healthcare, telecoms — giving security teams and regulators a shared picture of what's connected, and what's exposed.

ThingsRecon · Supply chain discovery