How ThreatAI works
One sentence: you ask for a check, we consult intel sources, we explain what we found.
The whole product is built around this loop:
- You give us a target. A URL, a file hash, an IP address, a domain, an email, a password — depending on which scan you run.
- We consult intel. Industry-standard sources we name explicitly: VirusTotal, AbuseIPDB, Have I Been Pwned, plus our own structural checks.
- We compose a verdict. Risk level, plain-English explanation, the sources that contributed, the confidence we have.
- You decide what to do. ThreatAI recommends; you act. We never reach into your accounts.
That's the whole product. The Investigation Agent (live for signed-in users) and continuous monitoring (rolling out) are layered on top of the same loop — they just chain more checks together and surface the reasoning end-to-end.