Seed Stage · Seeking strategic investment

The attack surface expanded
the tools didn't

The only email security platform that actually opens the link.

I built Phantriq after watching security analysts manually paste suspicious URLs into VirusTotal — hoping 90 antivirus engines would catch what their email gateway missed. They don't. We built what legacy email security was never designed to do: actually execute the link.

94% Detection Rate Benchmark v5 · 100 live URLs
<4s Analysis Time Per URL, fully isolated
17mo Idea to Platform Nov 2024 → Apr 2026
The problem

Phishing is still the #1 initial attack vector — not because defenders aren't paying attention, but because the tools analyze headers, not behavior

Secure Email Gateways check reputation lists. They don't execute the URL. They don't see the credential form that renders only after the browser loads. They don't catch zero-hour phishing that hasn't been reported yet. Phantriq does.

+202%
Increase in phishing attacks since 2020
Verizon DBIR 2024
$5.3B
Email security market, growing at 14.8% CAGR
Gartner 2024 → projected $12.1B by 2030
28 min
Average manual triage time per suspicious URL
SANS SOC Survey 2024 · Phantriq: <4s
What we built

Not a scanner
a detonation chamber

Every suspicious URL is opened inside a disposable, fully isolated container. We watch what it does — what JavaScript runs, what credentials it harvests, where it redirects, what it renders — and score it across six parallel signal layers.

Container Isolation
Each URL runs in a fresh Docker container. No cross-contamination, no user exposure, zero-state after analysis.
6-Layer Fusion Scoring
Reputation, behavioral analysis, credential harvesting detection, redirect chain, brand impersonation, TLS anomalies — fused into a single verdict.
Full SOC Workflow
Case management, playbooks, IOC correlation, SLA tracking, analyst assignment — not just a scanner but a complete security workflow platform.
Why this is defensible

Three things that aren't easy to replicate

01
Execution-based detection
Most security vendors analyze URLs statically. We execute them. Dynamic behavioral data is fundamentally harder to spoof and can't be bypassed with simple obfuscation.
02
Platform depth
17 months of continuous build: multi-tenant RBAC, MFA, full audit logging, enterprise integrations, SOC workflow. This isn't an MVP — it's an infrastructure play.
03
Configurable detection engine
Per-client detection profiles, channel weights, and scoring thresholds. Security teams tune the engine to their environment — not the other way around.
For investors

We're not pitching everyone
just the right ones

Phantriq has a working platform, a real benchmark, and a clear path to first enterprise customer. We're in early conversations with investors who understand that enterprise security infrastructure is won on depth — not marketing headlines. The window to come in at this valuation is small.

$350K – $500K
Pre-seed / Seed round
40%
Enterprise sales & go-to-market
35%
Infrastructure, security hardening & cloud scale
25%
Enterprise pilots & compliance roadmap
First enterprise deal 12-month target
SOC2 Type I Compliance milestone
Series A ready 18-month horizon
What you get
Early equity
Stake in a working platform with real benchmark performance — before enterprise pricing is set.
Market access
First-mover position in the Middle East & EU security market — $12.1B projected by 2030, regulatory-driven.
Strategic input
Direct access to shape product roadmap, enterprise go-to-market strategy, and compliance direction.
Schedule a 20-minute call

No deck required for the first conversation. We respond within 24 hours.