Evidence & audit

Proof, on demand.

Patching is table stakes. Proving it — per campaign, per endpoint, in a form an auditor accepts — is the job. Every lifecycle step in Shield-DM writes a record, so an evidence pack is one click, not one week.

console/evidence/auditor-pack
Auditor evidence packQ1 2026 · SIGNED
Endpoints covered
1,284
100% inventoried
Patch compliance
92%
SLA tracked
Open exceptions
11
all approved
Generated
4.2s
PDF + CSV
The catalogue

Twelve reports auditors recognise.

Generated from live data, filterable, exportable to CSV and PDF.

Asset inventory register

Hardware, OS, owner, department, last seen and completeness — your system of record for endpoints.

Software inventory report

Every package and application across the fleet, with version, source and affected-endpoint counts.

Patch compliance summary

Compliant vs exposed, by OS, group and SLA — the headline an auditor or board wants first.

Campaign closure report

Scope, approval, execution timeline, per-endpoint outcome, failures, reboots, exceptions, sign-off.

Critical patch SLA report

Time-to-patch against policy, with breaches surfaced and justified by exception where accepted.

Pending reboot report

What's installed but not yet effective, with policy, deferrals used and SLA status per endpoint.

Failed patch report

Failures with stage, code, message, category and retry count — the diagnostics, not just the red flag.

Exception register

Accepted risks: reason, owner, approver, compensating control, expiry and review date.

Endpoint patch history

The full per-machine timeline — every scan, job, result and reboot, retained for audit.

Anatomy of a pack

Everything a campaign did, in one document.

A campaign closes only when every target is successful, exception-approved, manually remediated, or explicitly excluded — and the pack proves which.

Objective & scope Target list Patch mode & window Approval trail Before-state Execution timeline Per-endpoint result Failed endpoints Pending reboots Exceptions After-verification Closure sign-off
console/audit-trail
Audit trailIMMUTABLE · EXPORTABLE
WhenActorAction
09:14p.raoApproved campaign #042
09:15systemIssued 214 signed jobs
11:02a.menonApproved exception · LEGACY-APP
14:40p.raoClosed campaign · evidence exported
14:41auditorDownloaded pack (read-only)

USER · ACTION · TIMESTAMP · TARGET · OUTCOME — LOGGED FOR EVERY MATERIAL EVENT

Request an eval licence

Export your first evidence pack.

Stand up the controller, enrol two endpoints, run a scan, and generate inventory and patch-compliance evidence — on your own infrastructure.