Zafran Security
Zafran Security is an AI-native threat exposure management (CTEM) platform for security teams buried in vulnerabilities and manual remediation work. It brings vulnerability findings together across an organization's existing scanners and tools to create a unified view of exposure across the hybrid enterprise, then determines actual exploitability by analyzing runtime presence, internet reachability, and existing compensating controls. Zafran maps vulnerabilities to controls the team already owns to mitigate risk before patching, and its RemOps capability uses generative AI to consolidate overlapping CVEs into a clear get-well plan routed to the right owners through existing ticketing platforms. The platform is delivered as a SaaS product accessed at api.zafran.io behind Descope-based authentication with API-key access for integrations (Axonius, Palo Alto Cortex XSOAR); it does not publish a public developer portal or OpenAPI. Zafran is backed by Menlo Ventures.
Zafran Security is profiled on the APIs.io network. Tagged areas include Company, Security, Cybersecurity, Vulnerability Management, and Threat Exposure Management.
Zafran Security’s developer surface includes engineering blog, signup flow, and 11 more developer resources.
Kin Score
Security Posture 3
Authentication, domain security, vulnerability disclosure, and trust-center signals.
Zafran Security Trust Center
SOC 2 Type 2, ISO/IEC 27001:2022, ISO/IEC 42001:2023, GDPR, TX-RAMP
SECURITYResources
Get Started 2
Portal, sign-up, and the first successful call
Build 1
SDKs, sample code, and the tooling you integrate with
Access & Security 5
Authentication, authorization, and security posture
Commercial 2
Pricing, plans, and the legal terms of use
Company 2
The organization behind the API
Other 1
Properties that don't map to a standard resource type