Chainalysis Reactor
Trace crypto across chains, mixers, bridges, and DeFi with Chainalysis Reactor — next-generation investigation platform thatturns independently validated blockchain intelligence into instant, court-ready visuals soyou can go from first lead to asset seizure in one end-to-end workflow
Reactor SaaS only via Bechtle on G‑Cloud (on‑prem Reactor available via other frameworks).
Features
- Next-gen graph engine for instant, flexible, real-time cross-chain visualization.
- Comprehensive multi-chain coverage mapping tokens, bridges, swaps deterministically.
- Independently validated data with industry-leading coverage and minimal false positives.
- Automated cross-chain tracing with clear, human-readable transaction path interpretations.
- Signals intelligence on 30M+ addresses to pre-label suspected activities.
- Real-time exposure updates and configurable alerts within about 90 seconds.
- Custom objects link bank, device, social, documents into investigations.
- Investigations API enables high-volume automation and seamless ecosystem integrations.
- Advanced demixing to handle obfuscation and complex privacy protocols.
Benefits
- Connect crypto activity to real-world entities for court-ready visuals.
- Independently validated blockchain intelligence
- Move from first lead to seizure with end-to-end workflow.
- Clearly see and explain complex cross-chain, DeFi, obfuscation tactics.
- Prioritise highest-risk wallets using Signals, geolocation, and exposure analytics.
- Off‑chain artefacts, rich annotations in a single graph for courtroom-exhibits
- Scale investigations, reduce backlogs through automated API tracing and triage.
- New chains and improvements land faster with Reactor's Next-gen engine.
Pricing
- Education pricing available
- Free trial available
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
3 6 5 6 4 6 3 6 8 6 6 0 3 5 6
Contact
BECHTLE LIMITED
Public Sector
Telephone: 01249 467900
Email: publicsector.uk@bechtle.com
About your service
- Service categories
-
Application Development and Deployment
Analytics and business intelligence
- Business Intelligence
- Multi cloud support
- Yes
Service scope
- Software add-on or extension
- Yes, but can also be used as a standalone service
- What software services is the service an extension to
- There are other modules which include: Transaction Monitoring for compliance, Cryptocurrency benchmarking for risk analysis, Market Intelligence for investors, Customer intelligence module
- Cloud deployment model
- Public cloud
- Service constraints
- No
- System requirements
-
- Access to the internet
- Access to a Firefox / Chrome browser
User support
- Email or online ticketing support
- Yes
- Support response times
-
The first line of support is available 24/7 with email ticketing. Specific response times are according to incident severity & the support tier purchased.
Typical median response times are approx. 1hr. - User can manage status and priority of support tickets
- No
- Phone support
- Yes
- Phone support availability
- 24 hours, 7 days a week
- Web chat support
- Yes, at an extra cost
- Web chat support availability
- 24 hours, 7 days a week
- Web chat support accessibility standard
- WCAG 2.2 AA
- Web chat accessibility testing
- Chainalysis Reactor is tested against WCAG 2.2 Level A and AA criteria and has undergone an independent WCAG 2.2 audit, partially compliant with majority of roadmap items completed in the last upgrade.
- Onsite support
- Yes, at extra cost
- Support levels
-
Chainalysis has a global team of in-house, certified Customer Support Specialists who are available 24hrs during the workweek as well as on-call for weekend and holiday emergencies (SEV 1 incidents). We offer customers a variety of ways to contact our team including email, in-app chat, and phone support (dependent upon Support Plan purchased). Response Time SLAs can be found in our Support Policy here:
https://go.chainalysis.com/support-policy. - Support available to third parties
- Yes
- AI chatbot
- No
Onboarding and offboarding
- Getting started
-
Advice on configuring through API can be given through our technical help
desk - Service documentation
- Yes
- Documentation formats
-
- HTML
- ODF
- End-of-contract data extraction
- All data is downloadable from the system up to the termination of service
- End-of-contract process
-
Customer is given notification at 90, 60 and 30 days. together with
instructions to activate a continuation or how to download any required data before the end of contract. - Documentation accessibility standard
- WCAG 2.2 A
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Microsoft Edge
- Firefox
- Chrome
- Application to install
- Yes
- Compatible operating systems
-
- Linux or Unix
- MacOS
- Windows
- Designed for use on mobile devices
- Yes
- Differences between the mobile and desktop service
- The application scales to improve user experience when accessing from a mobile device.
- Service interface
- No
- User support accessibility
- WCAG 2.2 AA
- API
- Yes
- What users can and can't do using the API
- Advice on configuring through API can be given through our technical help-desk
- API documentation
- Yes
- API documentation formats
-
- HTML
- API sandbox or test environment
- Yes
- Customisation available
- No
Scaling
- Independence of resources
-
This is a dedicated resource , with built in scaling and N+1 availability shared
across data-centres.
Analytics
- Service usage metrics
- Yes
- Metrics types
- Users contact the support team to get audit information
- Reporting types
- Reports on request
- Resource tagging
- No
- FOCUS resource tagging
- No
Resellers
- Supplier type
- Reseller providing extra support
- Organisation whose services are being resold
- Chainalysis
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- Security Clearance (SC)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
-
- European Economic Area (EEA)
- Other locations
- User control over data storage and processing locations
- No
- Datacentre security standards
- Supplier-defined controls
- Penetration testing frequency
- Less than once a year
- Penetration testing approach
- ‘IT Health Check’ performed by a CREST-approved service provider
- Protecting data at rest
-
- Physical access control, complying with SSAE-18 / ISAE 3402
- Encryption of all physical media
- Data sanitisation process
- Yes
- Equipment disposal approach
- A third-party destruction service
- Data sanitisation type
- Deleted data can’t be directly accessed / Cryptographic Erasure
Data importing and exporting
- Data export approach
- Data is exported ,with a dedicated export function that allows the data format to be specified.
- Data export formats
-
- CSV
- ODF
- Other
- Other data export formats
-
- XLS
- Data import formats
- CSV
Data-in-transit protection
- Data protection between buyer and supplier networks
-
- Private network or public sector network
- TLS (version 1.2 or above)
- IPsec or TLS VPN gateway
- Data protection within supplier network
-
- TLS (version 1.2 or above)
- IPsec or TLS VPN gateway
Availability and resilience
- Guaranteed availability
- 99.9% Availability
- Approach to resilience
- N+1 availability across multiple Data-centres
- Outage reporting
- Via a dedicated email to System Admins
Identity and authentication
- User authentication needed
- Yes
- User authentication
-
- Multi-Factor Authentication (MFA)
- Dedicated link (for example VPN)
- Username or password
- Access restrictions in management interfaces and support channels
- Password enforcement and 2FA
- Access restriction testing frequency
- At least once a year
- Management access authentication
-
- Multi-Factor Authentication (MFA)
- Dedicated link (for example VPN)
- Username or password
Audit information for users
- Access to user activity audit information
- Users contact the support team to get audit information
- How long user audit data is stored for
- At least 12 months
- Access to supplier activity audit information
- Users contact the support team to get audit information
- How long supplier audit data is stored for
- At least 12 months
- How long system logs are stored for
- At least 12 months
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
- ISO/IEC 27001
- Information security policies and processes
-
There is and Information Security Policy within Chainalysis, and it is made
available to staff. In order to protect our internal policies and customers we no longer share these documents externally. Further information can be given under Non Disclosure. - Software Security Code of Practice
- Yes
Operational security
- Configuration and change management standard
- Supplier-defined controls
- Configuration and change management approach
- Undisclosed
- Vulnerability management type
- Undisclosed
- Vulnerability management approach
-
As the services is hosted in AWS. Amazon Inspector is an automated
vulnerability management service that continually scans AWS workloads for
software vulnerabilities and unintended network exposure. - Protective monitoring type
- Undisclosed
- Protective monitoring approach
- Undisclosed information available under NDA
- Incident management type
- Supplier-defined controls
- Incident management approach
-
We have an internal process defined for incident reporting. Reports are made directly to our security and compliance team from internal or external sources.
Each incident will be assessed based on severity and impact.
reports will be provided for incident will feature time / date of incident
Severity , sensitivity of data and level of impact.
Severity ratings range from 1-4 with severity 1 incidents on a 1 hour to
respond SLA regardless of customers support level. - Post-quantum cryptography secure
- Yes
Secure development
- Approach to secure software development best practice
- Conforms to a recognised standard, but self-assessed
Public sector networks
- Connection to public sector networks
- No
Pricing
- Discount for educational organisations
- Yes
- Free trial available
- Yes
- Description of free trial
- Please contact us to discuss requirement
- Link to free trial
- https://www.chainalysis.com/free-cryptocurrency-sanctions-screening-tools/
Discount percentage by annual call-off contract value (excluding VAT)
- Less than £250,000
- 0.01%
- Between £250,000 and £500,000
- 0.01%
- Between £500,001 and £1,000,000
- 0.5%
- Between £1,000,001 and £2,500,000
- 0.5%
- Between £2,500,001 and £5,000,000
- 1%
- Over £5,000,001
- 2%
Non-mandatory Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- British Assessment Bureau
- ISO/IEC 27001 accreditation date
- Tuesday 4 February 2025
- What the ISO/IEC 27001 doesn’t cover
- N/A
- ISO 28000:2022 certification
- No
- ISO 9001 certification
- Yes
- Who accredited the ISO 9001 certification
- British Assessment Bureau
- ISO 9001 accreditation date
- Tuesday 4 February 2025
- What the ISO 9001 doesn’t cover
- N/A
- Quality management systems (QMS)
- Yes
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Please provide your Cyber Essentials Certificate Number
- 1558ec47-32b1-40ed-b801-d45188947349
- Cyber essentials plus
- Yes
- Please provide your Cyber Essentials Plus Certificate Number
- 96b7d157-8818-433b-b7f5-60dfc598a1ec
- Other security certifications
- No
Social value
- Section B - Commitment for Future: Delivery
-
-
Mission: Make Britain a clean energy superpower: To cut bills, create jobs and deliver security with cheaper, zero-carbon electricity by 2030, accelerating to net zero
Policy Outcome 4: Sustainable procurement practices: Reducing carbon footprints, minimising waste, and promoting the use of clean energy and green technologies.
- Understanding of how to influence staff, suppliers, customers, communities and/or any other appropriate stakeholders through the delivery of the contract to support climate and nature protection and improvement
- Activities to reconnect people with the environment and increase awareness of ways to protect and enhance it
-