For internal IT teams

Patch. Prove. Repeat.
Without the spreadsheet.

One platform for patch state, compliance evidence, and device posture across your Windows and Linux fleet — without enterprise pricing or a six-week onboarding call.

No agent required for read-only inventory 5-minute deploy on Windows or Linux UK-hosted, EEA data residency

Sound familiar?

Audit prep

"Can you pull the patch report by Friday?"

It takes two days of manual work to produce a report that tells the auditor what you already know.

Cyber insurance

Renewal questionnaire time again

Did you enforce BitLocker? Is MFA on all admin accounts? You know the answer is yes — but can you prove it?

Patch status

One device that never updates

You know it's there. You've chased it four times. You don't have a dashboard that flags it automatically.

Remote access

Spinning up a new RDP session every time

No central remote access panel. No audit trail. Just a list of IPs in a sticky note.

Tool sprawl

Five tools for five overlapping jobs

A patch tool, a vulnerability scanner, a remote access tool, a compliance checklist, and a reboot tracker. None of them talk to each other.

Script management

PowerShell scripts that only you understand

Every time you leave for holiday, something breaks that only runs via a PS1 file on your desktop.

How PatchPilot helps

Patch management

Know exactly what's unpatched. Fix it from the dashboard.

Real-time patch state for every device. Critical CVEs flagged automatically. One-click install of missing patches — Windows Update and third-party apps.

  • Windows Update + third-party apps (winget-powered)
  • Patch rings for staged rollouts — test before fleet
  • Reboot management with maintenance windows
  • Patch exclusions for apps that must stay on a specific version
Fleet patch status Live
94%
Fully patched
4
Pending restart
2
Critical missing
DESKTOP-ACCT01 3 CRITICAL
srv-files01 RESTART PENDING
Compliance evidence

Export a cyber insurance report in 30 seconds

Real-time compliance posture mapped to Cyber Essentials, ISO 27001:2022, SOC 2, and more. Evidence packs that tell an auditor exactly what they need — not a CSV of raw data they have to interpret themselves.

  • 6 frameworks: Cyber Essentials, ISO 27001, SOC 2, HIPAA, PCI DSS, CISA BOD
  • Per-control pass/fail with device-level evidence
  • Cyber insurance readiness score on the dashboard
  • PDF export ready for insurer or auditor
Cyber insurance readiness 87 / 100
Patch currencyPASS
BitLocker enforcementPASS
Vulnerability SLA2 OVERDUE
Admin MFAPASS
Export PDF
ISO 27001 evidence pack
Security posture

Device posture at a glance. Drift alerts when it changes.

BitLocker, Defender, Windows Firewall, UFW, LUKS, auditd — all collected at check-in. Baseline capture + drift detection flags when a device drifts from its expected state.

  • Windows: BitLocker, Defender, Firewall, SecureBoot, TPM status
  • Linux: UFW/iptables, LUKS, auditd, AppArmor/SELinux
  • Configuration profiles with ADMX-backed policy enforcement
  • Drift alerts when posture changes between check-ins
BitLocker
23/23 encrypted
Windows Defender
All active + updated
Firewall
1 device off
Drift alerts
0 unacknowledged
Unmanaged devices on network 3 discovered

Getting started

Up and running in under 30 minutes

1

Create your org and get your API key

Sign up, create your organisation, grab your enrollment token. Takes 2 minutes. No credit card for the free tier.

2

Deploy the agent to your first device

Windows: run the MSI or IntuneWin package with your token. Linux: one-liner shell script. Device appears in the dashboard within 5 minutes.

3

See your fleet's patch state immediately

First check-in collects OS version, patch status, installed apps, posture (BitLocker, Defender, etc.), and open CVEs. No manual inventory step.

4

Export your first compliance report

Go to Compliance → Cyber Essentials (or Cyber Insurance) → Export PDF. Hand it to your insurer. Done.

Pricing that makes sense

You pay for devices. Nothing else hidden.

Free for the first 25 devices — covers most small IT teams. When you grow, you pay per device. No tier jump that doubles your bill. No "contact sales" to see what things cost.

Free: 25 devices, Windows only, all core features
Pro: £2/device/mo — Windows + Linux, compliance packs
Business: £4/device/mo — MSP console, Intune integration
20% off on annual billing
See full pricing
Pro tier starts at
£2
per device / per month
50 devices = £100/mo
500 devices = £1,000/mo
COMING NEXT

What we're building for IT teams

Based on feedback from IT managers in early access. See full roadmap →

Q4 2026
AI Patch Advisor

Plain-English risk summaries for each patch — severity, business impact, rollback risk. Patch with confidence, not guesswork.

Q4 2026
Helpdesk integration

Auto-raise tickets when patches fail or vulnerabilities exceed SLA — no manual triage, no missed alerts.

Q1 2027
Image backup & restore

Bare-metal endpoint backup with BYO storage — lower RTO when ransomware strikes and cyber insurance needs proof.

Ready to actually know your fleet?

Free for 25 devices. No credit card. 5-minute deploy.