Skip to main content
For AI agents: a documentation index is available at https://docs.coverbase.com/llms.txt. This page is also available in markdown by appending .md to the URL.
The Bitsight connector is a licensed rating connector: you bring your own Bitsight subscription, and Coverbase reads your portfolio with your credentials. It works like the Black Kite integration. Ratings land on the vendor’s Certificates tab under Licensed Ratings, and changes become Radar signals.

What it does

  • Provisions monitoring once. The first time you save credentials, Coverbase adds one Bitsight source to Radar and one detector on it, named for a security rating drop. Both are created once. Archiving the source stops monitoring, and saving new credentials later does not bring it back.
  • Matches companies to vendors. Each company in your portfolio is matched to a vendor by a match recorded on an earlier pull, then by its domain (walking up to the parent domain, never down), then by its exact legal name. A company that matches no vendor is skipped.
  • Records the rating. Each pull records the matched vendor’s Security Rating (250 to 900).
  • Signals only on change. A Radar item is raised only when a stored rating moved. The first pull is a baseline, so connecting a provider does not flood Radar.

The detector

The detector starts enabled, alerting on a drop of 30 points or more between pulls. Edit it like any other Radar detector. It has three gates, and at least one must be set. A rating change alerts only when it passes every gate that is set. Minimum drop and Alert below take zero or more, in the provider’s own units. Alerts go through the ordinary Radar path, so reassessment triggers and monitoring plan signal rules see them like any other signal.

Authentication

Bitsight issues an API token. Coverbase sends it as the HTTP Basic user name to the Ratings API v2 at https://api.bitsighttech.com and reads your portfolio from /ratings/v2/portfolio.
  1. In Bitsight, create an API token for a user who can read your portfolio.
  2. Add the vendors you want monitored to that portfolio.

Set up in Coverbase

  1. Open Configuration → External Integrations and click Bitsight.
  2. Enter API Token. The panel notes: “Saving the token adds a Bitsight source to Radar. Rating changes on matched vendors become signals.”
  3. Click Save, then Test connection.
  4. Open Radar to find the new source and its detector.
The panel never shows a stored secret again. Remove deletes the stored credentials; ratings already pulled stay.

Certificate Vault guide

Where licensed ratings show on a vendor.

Working Radar signals

Triaging the signals a rating change raises.

Monitoring plans

Letting a rating drop pull monitoring forward.

Security intelligence guide

Coverbase’s own outside-in rating, which needs no subscription.