Extend RiskFortress with Plugins
RiskFortress features a powerful, extensible plugin system that allows you to customize and enhance your GRC platform with specialized functionality. Install plugins to add new capabilities, integrate with third-party tools, and extend framework coverage without modifying core code.
Why Use Plugins?
Our plugin architecture is designed for enterprise-grade extensibility, security, and maintainability.
Modular Architecture
Install only what you need. Plugins are isolated, versioned, and can be enabled or disabled without affecting core functionality.
Secure Sandboxing
Plugins run in isolated environments with granular permissions. Network and filesystem access are controlled and audited.
Easy Integration
Plugins integrate seamlessly with existing frameworks, modules, and workflows. Automatic navigation updates and route registration.
Database Safety
Automatic backups before schema changes, validation checks, and rollback capabilities ensure your data is always protected.
Version Management
Plugin versioning and update mechanisms keep your extensions current with the latest features and security patches.
Developer Friendly
Well-documented plugin API, TypeScript support, and lifecycle hooks make it easy to build custom plugins for your organization.
Available Plugins
Explore our growing library of plugins designed to extend RiskFortress capabilities.
Insurance Risk Model
Convert GRC data into insurance-grade risk scores, premium estimates, and underwriting evidence.
Key Features
- Insurance-grade risk scoring (0-100 scale) with component breakdown
- Monte Carlo simulation for financial loss modeling with confidence bands
- Premium estimation with risk-adjusted pricing (5-12% of expected loss)
- Scenario analysis for ransomware, cloud outages, vendor breaches, and more
Contract Risk Scoring
AI-powered contract analysis with risk scoring and automatic compliance mapping.
Key Features
- AI-powered clause extraction from PDF, DOCX, and TXT contracts
- Multi-dimensional risk scoring (legal, compliance, financial exposure)
- Automatic mapping to framework controls (ISO 27001, SOC 2, NIST, GDPR, POPIA)
- Interactive risk dashboards with heatmaps and timelines
Broker Portal
Simplified, client-safe view of insurance posture for brokers.
Key Features
- Portfolio dashboard with aggregated client risk summaries
- Client comparison tools for risk benchmarking
- Client risk summary reports with insurance scores
- Read-only access to aggregated insurance data
Prowler Cloud Security Scanner
Cloud security scanning and compliance integration for AWS, Azure, GCP, and OCI.
Key Features
- Multi-cloud support (AWS, Azure, GCP, OCI, GitHub, Kubernetes, MongoDB, M365)
- Automated security and compliance scanning
- Integration with GRC frameworks (NIST, GDPR, COBIT, ISO27001, CIS, HIPAA, PCI, SOC2)
- Interactive dashboard with findings viewer
Secure Evidence Chain Manager
Forensic-grade evidence management with cryptographic integrity and legal admissibility features.
Key Features
- Evidence ingestion from agents, external systems, and manual uploads
- Cryptographic integrity with SHA-256 hashing and canonical fingerprinting
- Time-stamped attestations using RFC 3161 and Chainpoint-style timestamping
- Tamper-evidence with write-once, read-many (WORM) storage after sealing
Broker Questionnaire Auto-Fill
Automatically complete cyber insurance questionnaires with confidence scoring and review workflows.
Key Features
- Automated questionnaire completion using existing evidence and agent data
- Confidence scoring for each auto-filled answer
- Visual questionnaire creator with drag-and-drop functionality
- Template library for common insurance questionnaires
Ready to Extend Your GRC Platform?
Get started with RiskFortress plugins today. All plugins are included with your RiskFortress license.