About SentriKat
We're on a mission to simplify vulnerability management by focusing on what actually matters: vulnerabilities being actively exploited in the wild.
Our Story
SentriKat was born from a simple observation: security teams are drowning in CVEs. With over 250,000 vulnerabilities in the NVD database and thousands more added each year, traditional vulnerability management has become an exercise in futility.
We asked ourselves: what if instead of chasing every CVE, we focused only on the vulnerabilities that attackers are actually using? That's where CISA's Known Exploited Vulnerabilities (KEV) catalog and ENISA's European Vulnerability Database (EUVD) come in.
SentriKat was built from the ground up to leverage both US and EU threat intelligence, automatically correlating your software inventory with actively exploited vulnerabilities. No more alert fatigue. No more prioritization paralysis. Just actionable intelligence about the threats that matter.
Engineered in Switzerland and designed for European data sovereignty, SentriKat runs 100% on your infrastructure. With NIS2 now in force across the EU, we built native EUVD integration and multi-source CVSS enrichment (NVD, CVE.org, EUVD) so your vulnerability management never depends on a single database — or a single continent.
Why KEV?
CISA's KEV catalog represents vulnerabilities with confirmed active exploitation. ENISA's EUVD provides the European perspective on exploited vulnerabilities, mandated by NIS2 Article 12. Together, they give you dual-continent coverage of the threats that matter — prioritized by real-world exploitation, not theoretical risk scores.
Our Principles
Your Data, Your Control
SentriKat is 100% self-hosted. Your vulnerability data never leaves your infrastructure. No cloud dependencies, no data sharing. The only external call is a lightweight license heartbeat — no customer data is transmitted.
Auditable Source Code
Security tools should be transparent. Our source code is available for security audits and compliance reviews. You can verify exactly what runs in your environment.
Simplicity First
Enterprise software doesn't have to be complicated. SentriKat deploys in minutes with Docker Compose and gets out of your way so you can focus on remediation.
European by Design
Engineered in Switzerland with native ENISA EUVD integration. SentriKat combines US and EU vulnerability intelligence with multi-source CVSS enrichment — no single point of failure, no dependency on a single continent's infrastructure.
Contact Us
Have questions or want to learn more? We'd love to hear from you.