FirmoryX

PSIRT / CVE compliance for MSPs

Know what's exposed.
Prove what's patched.

FirmoryX matches your clients' network-device firmware against live vendor advisories, alerts you the moment a critical CVE lands, and generates the cyber-insurance evidence packs you need at renewal.

or see a sample evidence pack (PDF) — no signup

CriticalHighKnown-exploited

See it in action

From device inventory to renewal-ready evidence — in one minute

Watch FirmoryX match a fleet against live CISA KEV and NVD advisories, then generate a tamper-evident evidence pack — the proof your client's cyber-insurer accepts.

Automated CVE → firmware matching

Every device's firmware, checked continuously against Fortinet, Cisco, CISA KEV and NVD. No more manual advisory cross-referencing.

Instant critical alerts

Email the moment a critical or known-exploited CVE hits a device you manage — plus a weekly digest so nothing slips.

One-click insurance evidence

Turn your current posture into a professional PDF per client: inventory, patch status, open vs. remediated. Built for renewals.

The differentiator

The evidence your client's insurer actually asks for

One click turns your current posture into a renewal-ready pack — not a marketing one-pager, but a signed audit artifact. RMM vendors can copy CVE matching; the evidence pack is why MSPs stay.

  • Device inventory & patch status, per client
  • Open vs. remediated, with known-exploited flagged
  • Report ID, reporting period & a content hash — tamper-evident

Cyber-insurance evidence pack

Firmware exposure & remediation

Insured entity: Acme Retail

Report ID
FX-9F2A-C71D
Reporting period
2026-05-16 → 2026-08-14
Devices monitored
6
Content hash
a3f1…8e0c

Firmware matched against CISA KEV, NVD, and vendor PSIRT feeds. Generated by FirmoryX as the monitoring system of record; the content hash makes any later change detectable.

FirmoryX · system of recordFX-9F2A-C71D · p.1/9

How it works

1

Import your devices

Add network devices manually or upload a CSV — name, vendor, model, firmware, and the client they belong to.

2

We match against live feeds

A scheduled job pulls PSIRT/CVE advisories and matches them to each device's firmware, opening a tracked vulnerability for every hit.

3

Alert, track, and prove it

Get alerted on critical exposure, work matches through to remediated, and export a client-ready compliance PDF whenever you need one.

Simple, device-based pricing

Start free on up to 25 devices — no card. Prices shown per month, excl. VAT.

Starter
$79/mo
Billed monthly · excl. VAT
Start free
  • Up to 100 devices
  • CISA KEV + NVD advisory matching
  • Email alerts on critical exposure
Most popular
Pro
$199/mo
Billed monthly · excl. VAT
Start free
  • Up to 500 devices
  • Insurance evidence PDF packs
  • Per-client risk segmentation
  • Weekly risk digest
Agency
$399/mo
Billed monthly · excl. VAT
Start free
  • Unlimited devices & clients
  • Everything in Pro, at scale
  • Priority support

Ready for your next renewal?

Start tracking firmware vulnerabilities and generating evidence in minutes.

Start free