Cortile
Automates vendor security reviews by collecting evidence, reading documents, and tracking findings over time.
≈ 2visits/mo
Emerging · estimate, read 2026-09-18
- For
- Third-party risk teams conducting vendor security reviews in healthcare and regulated industries
- Price
- Price not read
- Activity
- Activity not read yet
- Company
- founding year not on record
- Draft vendor security review scope from tool documentation
- Read and analyze vendor evidence to identify control gaps
- Track vendor security posture changes after review completion
- #197
FwChange
Manages firewall rule changes across multiple vendors with approval workflows, risk simulation, and audit trails.
7Active— - #8
Vanta
Automates compliance evidence collection and audit preparation across SOC 2, HIPAA, ISO 27001, and other frameworks.
71.1knot readContact sales - #25
Kratikal Tech Limited
Identifies and prioritizes security vulnerabilities in web apps, mobile apps, APIs, and cloud infrastructure.
780Active— - #27
PromptArmor
Assesses and monitors artificial intelligence risks across vendor portfolios using security scoring and change detection.
468not readFree plan - #28
Nexus Void Automated Penetration Testing
Runs continuous automated penetration testing and compliance verification with human-supervised attack agents.
42.9knot read— - #31
Hyperproof
Automates governance, risk, and compliance workflows across multiple frameworks with control mapping and evidence collection.
61.7knot readContact sales
What is Cortile?
Automates vendor security reviews by collecting evidence, reading documents, and tracking findings over time.
Who is Cortile for?
Third-party risk teams conducting vendor security reviews in healthcare and regulated industries
Do people use Cortile?
Emerging: ≈ 2 visits a month · estimate, 2026-09.
What are alternatives to Cortile?
In Security, by use: FwChange, Vanta, Kratikal Tech Limited, PromptArmor, Nexus Void Automated Penetration Testing, Hyperproof.
How we read a tool
No votes, no reviews, no vendor claims. Every week a crawler reads each tool's own site and a few public registries, and the words on the card are bands over what it read.
- Use: visits to the site (estimated), installs from npm and PyPI, presence in Chrome's usage report.
- Activity: the newest release on GitHub, npm or PyPI; the newest dated page on the site; open roles on a public jobs board.
- Price: the vendor's own pricing page, read with the date. A figure is printed only when it is on that page.
- The line and the use cases are written by us from the homepage, one row at a time, and refused when they repeat the vendor's marketing.
How AI assistants read each site — the reading vendors ask us about — is on each tool's own visibility page.