Skip to content

Email Alerts

Email is one of the two channels the alert engine delivers to today (the other is webhooks). See Alerts Overview for exactly which CVEs are alerted and which changes are not.


Who Receives Email Alerts

Email alerts go to the account email address of each member who has email alerts turned on:

  • Watchlist matches go to the member who owns the watchlist item, when email alerts are enabled for that item.
  • Environment matches go to every active member of the organization with email alerts turned on.

Per-environment recipients and email alert rules can be saved under Integrations, but the alert engine does not currently use them. Additional addresses do not receive alert emails.


What an Alert Email Contains

The alert engine runs every 15 minutes and sends one summary email per run for each watchlist item or environment that has new matches, rather than one email per CVE.

From: BreachSpider Alerts <[email protected]>

Subject: [BreachSpider] 3 new findings in Water Treatment Plant Alpha

Body: each matching CVE with its CVE ID (linked to the CVE page), a known-exploited badge where it applies, the title, the CVSS score, and a priority label. The email also links to your dashboard and to your notification settings.

Each CVE is emailed at most once per member. It is not emailed again if its details change later.


Turning Email Alerts On or Off

Email alerts are controlled by the email alert setting on your account under Account > Notifications, and by the email option on each watchlist item.

Digest frequencies (real-time, daily, weekly) and per-event-type email choices are not currently available. Every alert email is the per-run summary described above.


If Emails Are Not Arriving

  • Remember that only newly published CVEs are alerted. A CVE added to the known-exploited catalog later, or a change to an existing CVE, does not send an email. See Alerts Overview.
  • Watchlist alerts also require a CVSS score of at least 7.0.
  • Check spam or junk folders.
  • Ask your IT team to allowlist [email protected].
  • Check whether your organization's email gateway delays transactional email from new senders.