Automate on trusted data.
A read-only REST API (OAuth 2.0 client credentials, scoped tokens, per-client rate limits and IP allowlists) exposes assets, changes, risk, vulnerabilities, alerts, threat matches and exports. It runs on your appliance and is off until an administrator enables it.
Automation with guardrails.
Define what WireTrace does when conditions become true: asset attributes, groups, sites, zones, risk, vulnerabilities (including known-exploited), alerts, protocol and communication behaviour, and baseline deviations. Each policy runs as monitor only, recommend, require approval or automatic.
- Notify by email, syslog, webhook, SNMP trap or in-app
- Label assets and record compliance evidence
- Four-eyes approvals, emergency stop, change freeze and maintenance windows
- An append-only activity log of every decision and action
Sign-in and roles.
Single sign-on
LDAP/Active Directory or OpenID Connect single sign-on (for example Microsoft Entra ID or Google Workspace).
Roles and audit
Role-based access control and an audit trail of administrative and automation actions.
See it on your network.
A WireTrace evaluation runs on a mirror port, on your infrastructure, and shows your own devices, communications and risks.