Welcome to SubImage
SubImage is a graph-based security platform. It syncs your cloud accounts, identity providers, code, and devices into a single graph, then reads that graph to find what actually puts you at risk: exploitable vulnerabilities, compliance gaps, and attack paths an intruder could walk from an entry point to something critical.
The organizing idea is the Issue. SubImage produces a lot of raw signal, and on their own those are long lists. Issues are the layer on top: related signal is grouped, prioritized, and explained in plain language, so you work a short queue instead of triaging every row by hand. Everything else in the product either feeds that queue or lets you explore what is behind it.
Start here
New to SubImage? Read Getting Started. It takes you from an empty tenant to a working queue: connect a data source, let it sync, and start on your Issues.
The core surfaces
- Issues: the prioritized queue you work day to day.
- Vulnerabilities: CVEs, vulnerable packages, and fix-first action items.
- Attack Paths: how an attacker could chain resources to reach a crown-jewel asset.
- Rules and Compliance: policy checks, custom rules, and framework scores.
- Inventory: the normalized catalog of every resource, provider by provider.
- Graph: the relationship graph behind the inventory, with an interactive explorer.
Connecting your environment
- Modules: the data sources SubImage can sync. Each has its own setup guide under Modules in the sidebar.
- Integrations: OAuth connections to GitHub, Slack, Jira, Linear, and GitLab.
- Secrets: how to store credentials, in SubImage's vault or your own AWS account.
- SubImage Outpost: reach private APIs that are not exposed to the internet.
Working with your team and AI
- Team management and Single Sign-On: people, roles, and login.
- AI Features, Connect via MCP, and Agent Skills: point a coding agent at your security data.
Looking for deeper Cartography internals? Jump to the official docs.