Black Kite
Connect Black Kite to Guard to automatically import third-party cyber-risk assets and vulnerability findings.
Black Kite
The Black Kite integration allows Guard to automatically ingest assets and vulnerability findings from a connected Black Kite organisation. Once configured, external cyber-risk ratings from Black Kite appear alongside Guard's own findings, giving you a unified view of third-party risk without manually exporting data.
How it works
Guard authenticates to the Black Kite API using OAuth2 client credentials scoped to your tenant. On each sync, Guard:
- Enumerates companies in the connected Black Kite organisation.
- Imports company assets as native Guard assets.
- Maps per-category vulnerability findings from Black Kite to native Guard risks.
Each customer provisions their own OAuth2 client credential, keeping data isolated per tenant.
Prerequisites
- A Black Kite account with access to the organisation you want to import.
- An OAuth2 client ID and client secret generated in the Black Kite console.
Connect Black Kite to Guard
- In Guard, navigate to Integrations > Third-Party Risk > Black Kite.
- Enter your Black Kite OAuth2 client ID and client secret.
- Select Connect.
Guard validates the credentials and begins the initial import. Subsequent syncs run automatically.
What is imported
Disconnecting the integration
To remove the integration, navigate to Integrations > Third-Party Risk > Black Kite and select Disconnect. Existing assets and risks that were imported are not automatically deleted.