Black Kite

Connect Black Kite to Guard to automatically import third-party cyber-risk assets and vulnerability findings.

Black Kite

The Black Kite integration allows Guard to automatically ingest assets and vulnerability findings from a connected Black Kite organisation. Once configured, external cyber-risk ratings from Black Kite appear alongside Guard's own findings, giving you a unified view of third-party risk without manually exporting data.

How it works

Guard authenticates to the Black Kite API using OAuth2 client credentials scoped to your tenant. On each sync, Guard:

  1. Enumerates companies in the connected Black Kite organisation.
  2. Imports company assets as native Guard assets.
  3. Maps per-category vulnerability findings from Black Kite to native Guard risks.

Each customer provisions their own OAuth2 client credential, keeping data isolated per tenant.

Prerequisites

  • A Black Kite account with access to the organisation you want to import.
  • An OAuth2 client ID and client secret generated in the Black Kite console.

Connect Black Kite to Guard

  1. In Guard, navigate to Integrations > Third-Party Risk > Black Kite.
  2. Enter your Black Kite OAuth2 client ID and client secret.
  3. Select Connect.

Guard validates the credentials and begins the initial import. Subsequent syncs run automatically.

What is imported

Black Kite data

Guard representation

Company assets

Native Guard assets

Per-category vulnerability findings

Native Guard risks

Disconnecting the integration

To remove the integration, navigate to Integrations > Third-Party Risk > Black Kite and select Disconnect. Existing assets and risks that were imported are not automatically deleted.