A complete patch compliance platform for Microsoft endpoint estates
Verentra Patch Guardian combines the reporting depth Configuration Manager administrators need with the clarity security and executive stakeholders demand.
Compliance visibility
- Executive dashboard with Compliant, Required, Unknown, Error and Pending Restart states
- Compliance calculated as State 1 or 3 = Compliant, State 2 = Required — consistent everywhere
- Drill from tenant to collection, business unit, location, workload and individual device
- Server versus workstation split with separate compliance targets
- Non-reporting and inactive client detection with configurable thresholds
Update and deployment intelligence
- Top 10 missing updates ranked by exposure and severity
- Deployment health with success, failure, in-progress and unknown breakdown
- Superseded and expired update filtering across every view
- Per-update device lists so you can see exactly who is missing what
- Patch priority scoring blending severity, exposure and deployment state
Verentra Patch AI
- Plain-language questions answered against your compliance context
- Error-code interpretation with Configuration Manager-specific remediation
- Device risk scoring with explainable contributing factors
- AI-generated executive briefings ready to send to leadership
- Natural-language to read-only SQL, with every statement passed through a safety guard
Reporting and automation
- SSRS RDL generator producing schema-valid SCCM-Patching-Dashboard.rdl
- Thirteen scheduled report templates including executive, security and business unit compliance
- Daily, weekly, monthly and Patch-Tuesday-aligned cadences
- Eight alert rule templates covering compliance drops, failures and non-reporting devices
- CSV, JSON and print-ready exports from every table
Platform and governance
- Multi-tenant organizations with seven role types from Account Owner to Report Viewer
- Read-only architecture enforced in code, not just documentation
- Schema validation before any connection is trusted
- Full audit log of privileged actions and configuration changes
- Usage tracking so you know which reports and features are actually used