PatchPilot capabilities

One platform.
Every endpoint.

Inventory, updates, vulnerabilities, policy and evidence in one connected workflow. See what needs attention, act with control and verify the result.

Explore capabilities
01 / KNOW YOUR FLEET

Endpoint Inventory

Build a current picture of the devices you manage and the work each one needs.

  • See operating system, agent health and last contact for each device.
  • Group devices to match the way your team owns and maintains them.
  • Move from a fleet summary to a device's scans, updates and findings.
02 / CHANGE WITH CONTROL

Patch Management

Take an update from discovery to a verified installation without losing sight of the host or the job.

  • Scan now and patch selected devices or a defined update scope.
  • Use approvals and weekly or monthly maintenance windows before deployment.
  • Watch live job output and see whether a reboot is required.
03 / FOCUS ON EXPOSURE

Vulnerability Management

Connect published vulnerabilities to the packages and devices in your estate, then focus on fixes you can actually deploy.

  • Match Ubuntu and Debian CVEs through OSV, RHEL-family advisories and supported third-party software through NVD.
  • Prioritise with CISA KEV, EPSS, severity and device criticality.
  • Separate findings with a vendor fix from those still awaiting one.
04 / SET THE GUARDRAILS

Automation

Let policies schedule the repeatable work while preserving the review points that matter.

  • Choose security, severity-based or all available updates.
  • Set weekly or monthly windows in the policy's time zone.
  • Exclude packages, hold major-version jumps and choose automatic or manual approval.
05 / KEEP THE EVIDENCE

Compliance

Understand which devices meet your policy, why others do not and what happened after a patch run.

  • View patch compliance per device and track SLA targets.
  • Record exceptions and follow remediation history.
  • Review MTTR, MTTP and SLA attainment alongside deployment records.
06 / TURN DATA INTO DECISIONS

Analytics & Reporting

Move from fleet trends to a report that can be shared with the people responsible for action.

  • Track patch metrics, compliance, risk and remediation trends.
  • Export device, vulnerability, patch-history and software reports as CSV, JSON or PDF.
  • Download a one-page executive PDF summary.
07 / ACCOUNTABLE ACTION

Security & Access Control

Give people the permissions they need and keep a durable record of the decisions they make.

  • Use six roles with permission checks and multi-factor sign-in.
  • Control patch changes through approvals and maintenance windows.
  • Review the append-only audit log and set organization retention periods.
08 / ONE CONNECTED WORKFLOW

Multi-platform Management

Bring Windows and Linux endpoints into one patch operation, with macOS currently in testing.

  • Patch Linux through apt and dnf/yum, using the host's configured repositories.
  • Use Windows Update or WSUS, plus winget or PatchPilot's app catalogue for supported third-party programs.
  • Keep macOS visible as an in-testing platform while validation continues.
Move with clarity

Ready to simplify patch management?

Bring the next scan, deployment and audit trail into the same view.

Get Started