| Category | Function | Share | Rank | Negative rate | Labels | Quadrant | Since September 2026 |
|---|---|---|---|---|---|---|---|
| Third-party risk management | Security operations | 0% | 72 of 87 | 42% | 12 | criticized challenger | =heldSince September 2026: 0% → 0%, ±0 points. Inside the 11-point floor: within noise. Read over the models both editions asked. |
| Category | September 2026 | Now | Change | Reading | Rank |
|---|---|---|---|---|---|
| TPRM | 0% | 0% | =heldSince September 2026: 0% → 0%, ±0 points. Inside the 11-point floor: within noise. Read over the models both editions asked. | Within noise | Rank 70 → 72 of 87 |
Shares here are read over the models both editions asked, so they can differ by a point or two from the standing above, which counts every model in this edition.
The floor is 11 points of share, measured: how far the models move a leader on their own when the same questions are asked twice with nothing changed. A larger change is movement; a smaller one is noise, and both are shown. Movement is read over the twelve models both editions asked; GPT-6 Luna, Muse Glimmer 30B joined this edition and are in the standing but not yet in the comparison. How the floor is measured · The editions
| Model | First choice | Alternative | Mention | Negative | Labels |
|---|---|---|---|---|---|
| Claude Haiku 4.5 | 0 | 0 | 0 | 0 | 0 |
| GPT-5.4 mini | 0 | 0 | 0 | 0 | 0 |
| Gemini 3.5 Flash | 0 | 0 | 0 | 3 | 3 |
| Perplexity Sonar | 0 | 0 | 0 | 0 | 0 |
| Grok 4.1 Fast | 0 | 0 | 1 | 0 | 1 |
| Mistral Small | 1 | 0 | 0 | 0 | 1 |
| DeepSeek V4 Flash | 0 | 0 | 0 | 0 | 0 |
| Llama 4 Maverick | 0 | 0 | 0 | 0 | 0 |
| Qwen 3.7 Flash | 0 | 1 | 0 | 2 | 3 |
| Kimi K2 | 0 | 0 | 0 | 0 | 0 |
| GLM 4.7 FlashX | 0 | 1 | 0 | 0 | 1 |
| MiniMax M2.5 | 0 | 0 | 1 | 0 | 1 |
| GPT-6 Luna | 0 | 1 | 0 | 0 | 1 |
| Muse Glimmer 30B | 0 | 0 | 1 | 0 | 1 |
Verbatim evidence the judge attached to positive labels.
“Recognized as a Leader in the Forrester Wave TPRM Q1 2024, it excels in workflow capabilities and strategic vision.” Mistral Small · TPRM · comparative prompt · first choice
“Organizations already running ServiceNow for IT/service management” Qwen 3.7 Flash · TPRM · comparative prompt · alternative
“Organizations already using ServiceNow for IT, workflows, or GRC” GPT-6 Luna · TPRM · comparative prompt · alternative
“Strong workflow orchestration and enterprise scalability” GLM 4.7 FlashX · TPRM · comparative prompt · alternative
Verbatim evidence attached to negative labels. A warning on a product with few labels is a warning; on a product with many, it is one voice among them.
“Avoid these unless you are a Fortune 500 company ... ServiceNow's risk modules require massive upfront implementation costs” Gemini 3.5 Flash · TPRM · negative prompt · hard negative
“You should avoid heavy legacy GRC platforms (like Archer or ServiceNow), which are too expensive, complex” Gemini 3.5 Flash · TPRM · paraphrase prompt · hard negative
“cannot afford the massive deployment timelines, high costs, and complexity of legacy GRC platforms (like ServiceNow, ProcessUnity, or Archer)” Gemini 3.5 Flash · TPRM · direct prompt · soft negative
“without paying the heavy license fees of enterprise giants like ServiceNow or RSA Archer” Qwen 3.7 Flash · TPRM · direct prompt · soft negative
Citations exist only for the models that return a source list, five of the fourteen in this edition, so these counts come from 29 of the 32 answers that named ServiceNow Third-Party Risk Management and are not a share of its labels.
106 of the 115 domain citations in answers naming ServiceNow Third-Party Risk Management came from somebody else's page.
Pages are listed as the models cited them.
Search figures are US estimates from DataForSEO, read September 28, 2026; AI search demand is its modeled, directional estimate, not a count of queries to any assistant. The answers are this edition's. Two measurements side by side: neither is read as the cause of the other.
An email the morning each edition publishes: where this product moved, where it held, and by how much against the noise floor. One address, confirmed by a click; a stop link in every email.
Already following? Everything you follow, with a stop for each.
What ServiceNow Third-Party Risk Management's own pages state, read October 5, 2026: servicenow.com/products/third-party-risk-management.html. A claimed page can correct any of them.
Claiming is free and changes nothing in the data. A claimed page shows a verified contact who is told when each edition publishes and when ServiceNow Third-Party Risk Management's standing changes by more than the noise floor; the right to propose corrections to the vendor table, meaning names the judge wrote that should or should not read as ServiceNow Third-Party Risk Management, applied by version and listed in the change log; and a one-line description supplied by the vendor and marked as such.
A new claim receives the current edition's vendor brief for ServiceNow Third-Party Risk Management by email, built from the raw record of the edition. It shows: