Policy-grounded risk modeling
Define hazards, thresholds, and risk dimensions that reflect operational, security, and governance concerns.
Explainable runtime risk control for APIs
RisCoPlane observes API behavior, activates named hazards, evaluates risk across configured dimensions, and explains mitigation decisions by connecting policy actions to evidence, thresholds, and risk bounds.
Hazards AUTH_FAILURE_SPIKE and SENSITIVE_ENDPOINT_PROBE crossed configured risk bounds.
Repeated authentication failures on a high-sensitivity route increased integrity and confidentiality risk beyond policy thresholds.
The gap
Modern observability and security platforms provide rich runtime signals, detections, alerts, incidents, and workflow automation.
RisCoPlane focuses on a complementary layer: making the risk semantics behind runtime decisions explicit. It connects observed behavior to named hazards, multidimensional risk values, policy thresholds, and mitigation decisions in a single traceable decision chain.
RisCoPlane is designed for teams that need runtime decisions to be interpretable, auditable, and tied to explicit operational risk models, especially when deciding whether to observe, alert, throttle, deny, or escalate behavior.
The product
RisCoPlane adds a risk-decision layer on top of runtime signals. Configure risk dimensions, hazard definitions, and policies, then connect observed API behavior to traceable decisions about when to observe, alert, throttle, deny, or escalate.
Define hazards, thresholds, and risk dimensions that reflect operational, security, and governance concerns.
Connect routes, actors, hazards, and risk dimensions to the policy decision they influenced.
Support observe-only mode, alerting, throttling, denial, or escalation with a recorded rationale.
Export event histories, hazard activations, policy decisions, and risk trajectories for later review.
How it works
Middleware extracts semantic state from API requests, routes, status codes, identities, and other runtime context.
Prefix-based monitors track request history, route sensitivity, behavioral summaries, and conditions that matter to policy decisions.
Hazards are translated into risk values across configured dimensions such as integrity, availability, misuse, or operational impact.
Policies determine whether to observe, alert, throttle, deny, or escalate, while recording the risk rationale behind the decision.
Product evidence
RisCoPlane records the route, actor, request, active hazards, risk values, selected action, and explanation behind each policy decision. The ledger shows not only what happened, but why the policy layer continued, throttled, denied, or escalated a request.
Initial use cases
Translate high-rate behavior, route pressure, and suspicious request patterns into explicit availability and misuse risk decisions.
Classify routes by risk sensitivity and explain when behavior crosses configured risk boundaries.
Replay scenarios, tune thresholds, and evaluate whether policy decisions match expected runtime behavior.
Produce structured traces of hazards, risk values, policy decisions, and mitigations for review.
Design partners
RisCoPlane is currently in MVP stage. We are looking for platform, AppSec, API security, and governance teams willing to evaluate whether explainable runtime risk monitoring fits their workflows.
Contact
Tell us what kind of API risk, runtime monitoring, or governance problem you are exploring.
Email: hello@riscoplane.com