DISCOVER
Auto-Approve or Defer
Let safe updates roll out automatically while holding back others for validation.
- Auto-approve categories like Security and Critical Updates.
- Defer rollout of Feature Updates to reduce risk.
- Choose manual review for updates with known stability issues.
- Set defer periods—e.g., wait 7 days before applying new updates.
MANAGE
Smart Patch Control
A real-time grid interface lets you drill into update status by machine, update type, or KB.
- Filter systems by missing, failed, or pending updates.
- Approve or deny updates with a single click.
- Approve, defer or deny updates individually or in bulk.
- Review installation outcomes and retry failures instantly.
VISUALIZE COMPLIANCE AND EXPOSURE INSTANTLY
Real-Time Patch Dashboard
Use the Deploy Dashboard to track patch status across all systems.
- View patch compliance at a glance with widgets showing up-to-date vs out-of-date machines.
- Identify risk exposure with “Vulnerable” and “Highly Vulnerable” device counts based on missing security updates.
- Monitor device communication status with the “Last Reported” widget to distinguish stale systems from non-compliant ones.
- Cross-reference update gaps with device check-ins to isolate network or policy issues instantly.
FLEXIBLE RETRIEVAL, SMARTER DISTRIBUTION
Intelligent Update Delivery
Windows updates are retrieved using an agent-driven model optimized for bandwidth and availability.
- Machines can download updates directly from Microsoft—no VPN or on-prem network required.
- Optionally pre-download approved updates to apply them instantly during scheduled maintenance periods.
- Designate any machine as a cache server to locally store update packages and serve them to peers on the same network.
- If no cache is found, devices fall back to Microsoft—ensuring updates reach their target without added admin effort.
SCAN SCHEDULING
Patch Intelligence on Your Schedule
Run scan cycles daily, weekly, or on-demand—ensuring your view of patch status is always current.
- Set recurring patch scans by policy.
- Launch scans on selected endpoints in real time.