FAQ

Questions MSSPs ask before signing up.

Is the data actionable, or just a data dump?

The Full Report workbench has a triage workflow: severity ratings, a status field you can change inline, an advanced filter builder, and a resolved flag. Machine Info goes further and shows attack paths and evidence, not just a leaked string. You are not handed a spreadsheet and left to figure out what matters.

Can we control what this costs us each month?

Yes. Subscription plus prepaid credits, with per-service reservation and a Monthly Estimate that forecasts burn from your currently monitored domains before you get a surprise bill.

Can our team have scoped access by role?

Yes. Full role-based access control. Roles gate navigation, dashboard panels, and every action a user can take, not just what is visually hidden.

Can we fully brand it as our own?

Yes. Company name, contact details, and four separate logo uploads apply your branding across the app, the client portal, and every generated report. Clients do not see the Mispar name.

Can it plug into our existing stack?

Yes, through outbound webhooks to any HTTP endpoint: Telegram, a SIEM, a ticketing system. Configurable method, custom headers, and a full delivery log with resend.

What sources does Mispar actually monitor?

Infostealer log feeds from major stealer families, Telegram channels, public and private breach forums, paste sites, and combolist drops, correlated against a live threat intel feed of ransomware claims and breach disclosures.

How is Mispar different from generic dark web monitoring tools?

Most platforms are single-tenant or built for enterprise buyers monitoring their own domain. Mispar is multi-tenant by design and includes Prospecting, a tool for finding new clients based on exposure data, not just protecting existing ones.

How long does setup take?

Branding setup is a few fields and logo uploads. Most partners have their first client organization added and monitored within a day.

Still have a question specific to your setup?