Click a target supplier to create the connection · ESC = cancel
🔍
🌡 Risk — Tier 1 Critical
What this panel shows
Every row is an ultimate parent: suppliers under the same parent are counted as one group (a supplier without a parent counts as its own). Groups that appear more than once in the chain rank first (single point of failure); every other row is ranked by its risk score (0–100). Tap a row to make every company connected to that parent blink on the canvas. Your own intragroup entities are never lumped by ultimate parent.
×NThe same group (same ultimate parent, or same LEI) appears N times in the chain — the bar shows that count, not a score.
72Unique supplier — the number is the computed risk score.
72✎The ✎ means the score was entered by hand and replaces the calculation.
How the score is computedPoints are added per risk factor and divided by the maximum attainable (174), so the scale stays 0–100 without capping:
+25Critical or Important supplier
+2×Supplier size (1–10) — from annual cost unless set by hand
+18No exit plan with an available substitute
+12Critical, but no contract addendum
+15Hard to substitute (medium: +7)
+10No alternative provider identified
+5No audit right recorded
+10Flagged as a concentration risk
+8Critical provider status
+10Full reliance per contract (material: +5)
+10A contract expires within 90 days
+3Per extra party depending on this supplier (max +15)
+8Tier-1 direct supplier
+8Located or storing data outside the EEA
×0.5A field left unknown counts this much of a confirmed "no"
Colour: green < 30 · amber 30–49 · red ≥ 50. Unknown fields count at a fraction of a confirmed "no", so an empty record is not treated as a bad one. Adjust the weights under ☰ Menu → ⚙ Settings → ⚖ Risk model weights. The visible only / all nodes button switches between the filtered view and the whole model. Suppliers behind your intragroup entities always count, even while that branch is collapsed on the canvas — a risk does not disappear by folding the group shut.
No Tier 1 suppliers with criticality status critical.
🌍 Country concentration
🏭 Sector — Tier 1
📅 Contract expiry
📄 Contract Registry 0
Tier
Criticality
No contracts registered yet. Open an edge panel and add a contract.
Supplier
Connection
Contract name
Reference
Start
End
↺
Notice
Status
Critical
🔗 Unconnected nodes 0
Nothing matches the current filter.
Bulk assign0 selected
RegisterGives each selected node an arrangement → then set CIF / functions per contract.
Functions
Sector
⚠ Concentration risk
What this panel shows
Every supplier and cloud platform that supports more than one of your critical functions, ranked by function exposure. A high-ranking entry is a single point of failure across multiple business functions.
●Regular T1 supplier — the number after the bar is the function count (p).
☁Cloud / platform provider (hyperscaler) — shown as Xs · Yp: X = number of your T1 suppliers that depend on this platform, Y = processes at risk if the platform fails.
Monitoring and managing concentration risk. Entries in this list feed your concentration risk assessment.
Per country
Canvas
✚ Add supplier here
📌 Place hidden supplier here… (138)
🔗 Connect to existing node
🔗 Connection
Direction
Weight: 2/5
Label (visible when zoomed in, max 24 chars)
Description
☁ Platform / infrastructure
Cloud or hyperscaler dependency — shown in the ☁ Cloud view and counted in Concentration.
🏷️Category edges cannot hold contracts.
Category nodes are transparent grouping nodes — they are not legal counterparties.
Register contracts directly on each individual supplier connection inside this category.
📄 Contracts (0)
📄 Contract details
🔖 Contractual arrangement ref. no.*
📋 Contract name (internal label)
📄 Type of contractual arrangement*
💱 Currency
💰 Annual expense or estimated cost
🔧 Service / component category*
📅 Start date of the contractual arrangement*
📅 End date of the contractual arrangement*
🚫 Reason of the termination or ending of the contractual arrangement
Notice period — financial entity (days)
Notice period — supplier (days)
Auto-renewal period (months) (internal)
⚖ Country of governing law of the contractual arrangement*
🌐 Country of provision of the services
💾 Storage of data*
🗄 Location of the data at rest (storage)*
🗄 Location of management of the data (processing)
🔐 Sensitiveness of the data stored by the supplier
⚡ Level of reliance on the service
🏭 Function identifier
🏭 Functions served by this contract (model 2.0)
⏱ Recovery time objective (hours)
⏱ Recovery point objective (hours)
🔍 Audit rights
⚖ Penalty clause
⚠ Auto-renewal (internal)
⚙ Filters
Criticality
Critical or Important
12
Non-critical
82
Other
0
Process / Function
Filter the chain to one business function.
⠿P1 EUV Systems
⠿P2 DUV Systems
⠿P3 Production & Assembly
⠿P4 Software & Services
Depth
Show Tier 2
Show Tier 3
Show Tier 4
Categories
🌐 Bulk GLEIF Verification
#
Node
LEI
Status
Ultimate Parent
Result
▸ MANAGE PROCESS OR FUNCTION
Compliance14×
Administration9×
Trading10×
Custody6×
Payments6×
+ New process or function
Only the name is required — the rest can be filled in later.
📝 Reasons for criticality/importance (optional)
⚠ Criticality
📅 Last assessment (optional)
⏱ Process/Function RTO hours (optional)
⏱ Process/Function RPO hours (optional)
💥 Discontinuation impact
⚖ Risk model weights
Points per risk factor. The score is points ÷ maximum possible × 100, so adding weight to one factor automatically rebalances the rest — no capping. Model version .
▸ MANAGE CUSTOM FIELDS
These fields appear at the bottom of every node's edit panel, and export/import as extra "Custom: …" columns in the Suppliers Excel sheet.
+ New custom field
Type
Options (comma-separated)
📋 CHANGELOG
No changes yet
No changes recorded yet.
⌨ KEYBOARD SHORTCUTS
Navigation
Drag
Hold mouse button
Zoom
Scroll wheel
Spotlight
Click on node
Focus view
Click spotlighted node again
Bulk select
Shift + click
Lasso select
Shift + drag on canvas
Delete selection
Del / Backspace
Deselect
Esc
Edit
Undo
Ctrl+Z
Redo
Ctrl+Y / Ctrl+⇧Z
Save (.spv)
Ctrl+S
Save As… (.spv)
Ctrl+⇧S
Open… (.spv)
Ctrl+O
Delete supplier
Del / Backspace
New supplier
Double-click on canvas
Edit supplier
Double-click a supplier
Connection
Right-click → Connection
View toggles
Data quality dashboard
Ctrl+D
Geographic risk map
Ctrl+G
Descriptions / labels
Ctrl+L
Risk heatmap
Ctrl+H
3D view
Ctrl+3
☁ Infrastructure
Ctrl+I
⚠ Concentration
Ctrl+K
Fit / reset view
Ctrl+0
Zoom in / out
Ctrl+= / Ctrl+-
Ultimate parent names
Ctrl+U
Other
Manual (search)
F1
This overview
? / Ctrl+/
Cancel connection
Esc
←Exit focus view
🌍 Geographic Risk Map
LegendCritical or ImportantFin. RegulatedNon-criticalAll processes (outer ring)pinch / scroll = zoom · drag = pan · double-tap = reset
📊 Data Quality Dashboard
Measures how completely each supplier record is filled in — not the supplier's risk level.
—
Suppliers
—
Avg. completeness
—
≥ 80% (green)
—
60–79% (amber)
—
Below 60% (red)
Supplier ↕
Tier ↕
Score ↕
Missing fields (grey = optional, not scored)
No suppliers match the selected filter.
🖼 BATCH LOGO UPLOAD
Name each file after the supplier: nimbus.png, northgate.svg, etc.
Matching is case-insensitive. The filename without extension is matched to node names.
📋 Batch add suppliers
0 suppliers
✏ Edit details
📋 B_01.01 — Entity Reporting
Fields included in the export
🔖 LEI
🏷 Entity name
edit in Name field ↑
🌍 Country code
—
🏦 Entity type
🏛 Competent authority
📅 Date of reporting
🔗
Linked contracts
Upstream contract (with your customer) — set criticality (CIF) & functions here.
Basic information * = required
Name*
🌐 Website
Description
Type
Criticality
Country of origin of ultimate parent*
🏷 Sector
🗂 Category (visual group)
Identity
Compliance & Assessment
▸ Custom fields (defined in Settings)
▸Risk & continuity
▸ Assurance
🏅 Certification
🚪 Exit plan with available substitute
📋 Contract addendum
🎯 Risk score
📊 Risk score breakdown
green <40 · amber 40–64 · red ≥65 Manual override replaces auto score.
▸ Exit & continuity
📊 Substitutability
🔄 Alternative available?
🔄 Alternative provider (name)
🔍 Audit right
📅 Last audit
💥 Impact of discontinuation
▸ Risk flags
👑 Critical provider
⚠ Concentration risk
▸Identity & ownership
▸ Supplier LEI
Legal name (GLEIF)
EUID
▸ Ultimate Parent
Name
LEI
EUID
🔑 Identifier type
🏛 Legal form
▸Commercial
▸ Service / component
💰 Annual cost (EUR/yr)
RTO / RPO
🗄 Data storage location
▸Structure & appearance
Size: 2(from costs)
Auto from costs.
⚡
Highlight node
Adds a pulsing glow ring to draw attention to this node
🪓 Split sub-suppliers by
⊞
Intragroup node
Children respect the function filter
⬡
Shared supplier
Supplies multiple Tier-1 suppliers
🖼 Logo
▸Process/Function
▸ Process/Function (from contracts)
✏ Bulk edit
Criticality
Sector
Service / component category
Origin
Exit plan with available substitute
Attention blink
Certification
Contract addendum
Process/Function click once = add · click twice = remove · click again = no change
🏭 Aurion (semiconductor) loaded — showing Tier 1–2; switch on Tier 3/4 under ⚙ Filters → Depth for the full chain · try Intragroup / Shared / ☁ Infrastructure / Concentration
Murex SAS USSupplier ▲ Murex SAS 🔴 CriticalTier 1📦 SaaS