Agentless evidence
Management uses validated SSH and read-only SNMP where applicable, without installing an agent on managed systems.
Security
Self-hosted control, guarded actions, and an audit trail make the operating boundary visible instead of implicit.
Management uses validated SSH and read-only SNMP where applicable, without installing an agent on managed systems.
Dedicated non-root access and narrowly scoped privilege keep administrative reach explicit.
Encrypted credential storage protects configured secrets, and no secret is returned after creation.
Pinned host identity and explicit trust approval help prevent an unexpected system from being accepted silently.
Purpose-limited collection uses response limits, timeouts, and redaction to constrain retained evidence.
Typed actions, previews, and explicit confirmation replace arbitrary shell or unrestricted commands.
Approval and audit records sit beside rollback and recovery controls for supported changes.
You retain the control plane in your environment and apply signed releases through a visible update boundary.