Alerts that read like a note from a colleague.
Security tools usually shout in codes. Threat Alerts writes in plain words: what happened, who it affects and the button to fix it. Serious issues reach you right away, small ones wait for the weekly summary.
- Someone in another country tried to sign in as accounts@The attempt was blocked. Change the password to be safe.Change passwordIt was meJust now
- Laptop-07 needs a Windows update.It is 41 days behind and missing 2 security fixes.Remind Ravi14 min
- A remote-access tool was installed on Laptop-12.If Arjun did not install it, remove it from the device.Ask ArjunIsolate device1 h
- DMARC is now protecting your domain.Nobody can send email pretending to be sharmaexports.com.3 h
Every capability, built for teams without a security department.
Threat Alerts turns signals from email, logins and devices into short messages that say what happened, how serious it is and the one thing to do next.
Plain language, always
"Laptop-07 needs a Windows update. Click to remind Ravi." Every alert says what, who and what next, without technical codes.
Severity that means something
Critical alerts are rare and urgent. Everything else is grouped so you are never flooded.
Where you already are
Alerts reach you by email, Slack, Microsoft Teams or WhatsApp, based on how urgent they are.
Built-in response
Sign out a user, block a sender or quarantine a device straight from the alert.
The right person
Route device alerts to IT, invoice alerts to finance and everything critical to the owner.
Incident timeline
Every alert keeps a clear timeline of what happened and what was done, ready for insurers or auditors.
Four steps, most of them automatic.
Collect
Signals arrive from Phish Shield, Email Guard, Device Watch and Password Health.
Connect the dots
Related signals are joined into one alert, so a single attack never becomes ten emails.
Explain
Each alert is written in plain words with the risk and the one action that matters.
Resolve
Act in one tap. The alert closes and the Security Score updates.
Threat Alerts, answered plainly.
What happens during an attack?
You get a critical alert within a minute, with the action already prepared: sign out the account, block the sender or isolate the device. Citadel plans also get a direct line to the response team.
How many alerts will we get?
Most companies with 20 to 100 staff see one or two alerts that need action per week. Everything else goes into a weekly summary.
Can alerts go to more than one person?
Yes. Set routing rules by alert type and severity, with a backup contact for when someone is away.
Threat Alerts is stronger alongside these.
Find the open gates before someone else does.
Type your company domain. In about five minutes you get a starting Security Score and the three fixes that matter most. Nothing to install, no card needed.
- SPF, DKIM and DMARC
- Look-alike domains
- Exposed services
- Leaked staff addresses
- Certificate health