Skip to content
SAF Apps

heimdall Heimdall

Heimdall is MITRE SAF™'s security data visualization and analysis platform. Upload security validation results in Heimdall Data Format (HDF), view interactive compliance dashboards, compare results across systems and time periods, and generate comprehensive reports for stakeholders.
Dashboard View

Visualize Your Security Posture

Load data into Heimdall for easy sorting, filtering, and summarizing of your security results. Focus on information relevant to security assessments.
Heimdall dashboard showing overall compliance statistics
Data Aggregation

Aggregate Your Security Data

Heimdall automatically converts input security data into a common format (Heimdall Data Format). Unite all of your security scan output under a single pane of glass. Export your aggregated data into a multitude of common formats supporting assessments.
Heimdall aggregating data from multiple sources
Detailed Analysis

Deep Dive Into Your Data

Use Heimdall to examine each control in your test suite in detail. Determine root causes of failures and see the exact test code that led to each result.
Detailed control failure view with test code
Get Started

Deployment Options

Choose the deployment option that works best for your organization's security and collaboration requirements. Heimdall can be deployed as a full server application, a lightweight browser tool, a containerized service, or an NPM package.
heimdall

Heimdall Server

Full-featured server application with database backend. Store results centrally, enable team collaboration, track compliance over time, and integrate with CI/CD pipelines. Ideal for enterprise security teams.

heimdall

Heimdall Lite

Client-side visualization tool that runs entirely in your browser. No server required - upload HDF files directly for instant visualization. Perfect for individual security analysts or quick compliance checks.

Container Deployment

Deploy Heimdall as a containerized application using Docker or Kubernetes. Use our Helm chart for simplified Kubernetes deployment, or pull the Docker image directly from DockerHub for container orchestration.

NPM Package

Install Heimdall Lite as an NPM package for integration into your Node.js workflows or local development environment. Ideal for developers who want to embed Heimdall visualization capabilities into their own applications.

MITRE Security Automation Framework (MITRE SAF) is a trademark of The MITRE Corporation. Released under the Apache 2.0 License.