Extend RiskFortress with Plugins

RiskFortress features a powerful, extensible plugin system that allows you to customize and enhance your GRC platform with specialized functionality. Install plugins to add new capabilities, integrate with third-party tools, and extend framework coverage without modifying core code.

Why Use Plugins?

Our plugin architecture is designed for enterprise-grade extensibility, security, and maintainability.

Modular Architecture

Install only what you need. Plugins are isolated, versioned, and can be enabled or disabled without affecting core functionality.

Secure Sandboxing

Plugins run in isolated environments with granular permissions. Network and filesystem access are controlled and audited.

Easy Integration

Plugins integrate seamlessly with existing frameworks, modules, and workflows. Automatic navigation updates and route registration.

Database Safety

Automatic backups before schema changes, validation checks, and rollback capabilities ensure your data is always protected.

Version Management

Plugin versioning and update mechanisms keep your extensions current with the latest features and security patches.

Developer Friendly

Well-documented plugin API, TypeScript support, and lifecycle hooks make it easy to build custom plugins for your organization.

Available Plugins

Explore our growing library of plugins designed to extend RiskFortress capabilities.

Insurance Risk Model

Convert GRC data into insurance-grade risk scores, premium estimates, and underwriting evidence.

Key Features

  • Insurance-grade risk scoring (0-100 scale) with component breakdown
  • Monte Carlo simulation for financial loss modeling with confidence bands
  • Premium estimation with risk-adjusted pricing (5-12% of expected loss)
  • Scenario analysis for ransomware, cloud outages, vendor breaches, and more

Contract Risk Scoring

AI-powered contract analysis with risk scoring and automatic compliance mapping.

Key Features

  • AI-powered clause extraction from PDF, DOCX, and TXT contracts
  • Multi-dimensional risk scoring (legal, compliance, financial exposure)
  • Automatic mapping to framework controls (ISO 27001, SOC 2, NIST, GDPR, POPIA)
  • Interactive risk dashboards with heatmaps and timelines

Broker Portal

Simplified, client-safe view of insurance posture for brokers.

Key Features

  • Portfolio dashboard with aggregated client risk summaries
  • Client comparison tools for risk benchmarking
  • Client risk summary reports with insurance scores
  • Read-only access to aggregated insurance data

Prowler Cloud Security Scanner

Cloud security scanning and compliance integration for AWS, Azure, GCP, and OCI.

Key Features

  • Multi-cloud support (AWS, Azure, GCP, OCI, GitHub, Kubernetes, MongoDB, M365)
  • Automated security and compliance scanning
  • Integration with GRC frameworks (NIST, GDPR, COBIT, ISO27001, CIS, HIPAA, PCI, SOC2)
  • Interactive dashboard with findings viewer

Secure Evidence Chain Manager

Forensic-grade evidence management with cryptographic integrity and legal admissibility features.

Key Features

  • Evidence ingestion from agents, external systems, and manual uploads
  • Cryptographic integrity with SHA-256 hashing and canonical fingerprinting
  • Time-stamped attestations using RFC 3161 and Chainpoint-style timestamping
  • Tamper-evidence with write-once, read-many (WORM) storage after sealing

Broker Questionnaire Auto-Fill

Automatically complete cyber insurance questionnaires with confidence scoring and review workflows.

Key Features

  • Automated questionnaire completion using existing evidence and agent data
  • Confidence scoring for each auto-filled answer
  • Visual questionnaire creator with drag-and-drop functionality
  • Template library for common insurance questionnaires

Ready to Extend Your GRC Platform?

Get started with RiskFortress plugins today. All plugins are included with your RiskFortress license.