One portal for every engagement
The portal is where every scan session lands, gets tracked, and gets shared. Upload sessions from the CLI or your agents, watch risk trend down as remediation closes, cross-check installed software against the CVE database, and hand clients a report as a public link. One place for the whole engagement.
Every scan session lands here
Each finished session uploads to the portal, where the dashboard charts your Security Posture Trends: risk score over time, findings by severity, total findings, and hosts scanned. Alongside the trend you get a remediation timeline, your scheduled scans, and a risk register you can export to CSV.
Open any session and it expands into the full picture:
- Notes and a Remediation view to work findings to closure.
- Compliance panels scored per framework.
- A network Topology map of what the scan discovered.
- An Ohio Revised Code 9.64 attestation for public-entity engagements.
Match installed software against the CVE database
A network scan sees what is on the wire. Inventory sees what is installed. Import a device-and-software export from your RMM and the portal cross-references every application against known vulnerabilities, no packet required.
Import a device-and-software export from your RMM (Syncro). The portal resolves every installed application and operating system to its NVD CPE, queries the CVE database, applies a version-range check, and records each match with its CVSS score, severity, and exact-or-fuzzy confidence. Results come back as three views:
- Overview: asset count, distinct software titles, a Bullium Risk Score and an A-to-F grade.
- Software: a per-application table with worst severity and links out to NVD.
- Matrix: an application-by-machine grid with severity-colored cells.
It is agentless: no probe, no open port, no credentials to place. It covers the machines a network scan never touches, from the laptop that was closed during the sweep to the workstation on a segment you were not authorized to cross.
Illustration of the Matrix view.
The admin side runs the fleet console
The same portal that collects and shares your sessions also dispatches commands to them. Remote command dispatch to your agents ships from the Business tier: queue a scan, pull a session, or roll an update on any one agent you choose. On the MSP tier, the admin side becomes the full fleet console (Command & Control), dispatching across every scanner agent at once with agent groups and an audit log.
How it all connects
Sessions flow up from the CLI and your agents into Collect, then out as public share links. Inventory rides a separate input, your RMM export, and never needs to touch the network.
What the portal does per tier
The portal is one product; your tier decides how much of it is on. The Open-source core runs entirely offline, so the portal starts at Pro.
| Capability | Pro | Business | MSP |
|---|---|---|---|
| Upload and download sessions | Yes | Yes | Yes |
| Read sessions and update status | Yes | Yes | Yes |
| Session limit | 50 | 500 | Unlimited |
| Agent limit | 5 | 25 | Unlimited |
| Peer benchmarking | No | Yes | Yes |
| Remediation tracking | No | Yes | Yes |
| Webhook subscriptions | No | Yes | Yes |
| Compliance panels | No | Yes | Yes |
| Command dispatch to individual agents | No | Yes | Yes |
| Fleet console and agent groups | No | No | Yes |
| Audit log and database health | No | No | Yes |
Access is by invitation; the portal has no self-serve signup. Your tier is provisioned when you buy, and it decides which panels light up.
Get every engagement into one portal
Collect your sessions, track remediation to closure, cross-check software against CVEs, and share client-ready reports, all from the netvuln-tool portal. Pick a tier and we will provision your access.