Guardian Endpoint Security.

Real-time asset inventory, software monitoring, policy enforcement and firewall control — agent to server to dashboard.

128Endpoints Online
99.2%Fleet Compliance
0Active Threats
4.0.0Agent Version
Live Threat Feed
AUTO-REFRESH 60s  ·  ALL ENDPOINTS
HIGH
KIOSK-REC01
Unapproved software detected — VLC Media Player 3.0.21
14:22
MED
LAPTOP-HR07
Firewall rule added without policy approval — UDP 4500 inbound
14:18
INFO
WKSTN-042
Policy auto-enforced — unapproved app removed successfully
14:10
MED
WKSTN-098
Registry key modified — HKLM\SOFTWARE\Policies
13:58
HIGH
SRV-DC01
Login attempt from unrecognised IP — 203.0.113.42
12:44
INFO
FLEET
Compliance scan complete — 128 endpoints, 99.2% pass rate
12:30
128Agents Online
3Violations
OCIInfrastructure
OCIInfrastructure
System Architecture

Agent → Server → Dashboard

Guardian uses a lightweight PyQt6 agent installed on each Windows endpoint. Agents report to a central FastAPI server hosted on Oracle OCI, which powers the web dashboard.

Guardian Agent
Lightweight PyQt6 agent installed on every Windows endpoint. Silently collects data and enforces policies locally.
PyQt6 Windows Lightweight
Deploys on N endpoints — one per machine
HTTPS
Encrypted
Central Server
FastAPI backend on Oracle OCI. Aggregates all agent data, manages policies, stores telemetry, and serves the dashboard API.
FastAPI SQLite Oracle OCI
REST API
JSON
Web Dashboard
Single-page HTML/JS dashboard. View all endpoints, run remote actions, export compliance reports, and configure policies.
HTML/JS Real-time CSV Export
Live Dashboard

Everything in One View

Guardian Dashboard
LIVE
Overview
Asset Inventory
Software
Compliance
Firewall
Activity Log
Agents
Policies
Fleet Overview
128 online
↓ Export CSV
⟳ Refresh
128
Endpoints Online
↑ All connected
3
Policy Violations
↑ 2 new today
2,841
Software Titles
Across all endpoints
99.2%
Fleet Compliance
↑ +0.4% vs last scan
Endpoint StatusLive
HostnameOSLast SeenStatus
WKSTN-042Win 11 ProJust nowProtected
SRV-DC01Win Svr 2212s agoProtected
LAPTOP-HR07Win 11 Home2m agoPolicy Drift
KIOSK-REC01Win 108m agoUnapproved SW
Security Score
99.2 SCORE
Firewall active
Defender running
2 policy drifts
1 unapproved app
BitLocker on
Unapproved software
KIOSK-REC01 · VLC 3.0.x
9m ago
Firewall rule changed
LAPTOP-HR07 · Rule #14
22m ago
Asset Inventory
128 endpoints
↓ Export CSV
128
Total Assets
3.2 TB
Total Disk
512 GB
Total RAM
128
CPU Cores
HostnameCPURAMDiskOSLast Scan
WKSTN-042Intel i7-1270016 GB512 GB SSDWin 11 ProJust now
SRV-DC01Xeon E-2388G64 GB2 TB NVMeWin Svr 20221m ago
LAPTOP-HR07Intel i5-1135G78 GB256 GB SSDWin 11 Home2m ago
KIOSK-REC01AMD Ryzen 34 GB128 GB HDDWin 10 Pro8m ago
WKSTN-098Intel i9-1390032 GB1 TB NVMeWin 11 Pro10m ago
Software Inventory
3 flagged
↓ Export
2,841
Total Installed
2,838
Approved
3
Flagged / Blocked
ApplicationVersionEndpointsPublisherStatus
Microsoft 36516.0.17128MicrosoftApproved
Google Chrome124.0118Google LLCApproved
7-Zip 23.0123.0176Igor PavlovApproved
VLC Media Player3.0.211VideoLANBlocked
TeamViewer15.522TeamViewer GmbHReview
uTorrent3.6.01BitTorrent Inc.Blocked
Compliance Overview
Scanned 4m ago
↓ Report
99.2%
Fleet Score
125
Fully Compliant
2
Policy Drift
1
Critical Violation
Policy CheckScopePassFailResult
Approved software onlyAll endpoints1271Partial
Firewall enabledAll endpoints1280Pass
Windows Defender activeAll endpoints1262Partial
No P2P softwareAll endpoints1271Fail
BitLocker enabledLaptops only120Pass
Remote access policyAll endpoints1262Partial
Firewall Management
2 changes
+ Add Rule
128
Firewall ON
847
Total Rules
2
Unauthorised Changes
Firewall Rules — LAPTOP-HR076 rules
Rule NameDirectionProtocolPortActionState
Allow RDPInboundTCP3389AllowEnabled
Block TelnetInboundTCP23BlockEnabled
Allow HTTP/SOutboundTCP80,443AllowEnabled
Custom Rule #14InboundUDP4500Allow⚠ Unapproved
Block SMBInboundTCP445BlockEnabled
Activity Log
Real-time
↓ Export
🔍 Filter
TimeEndpointEventSeverityDetail
14:22:08KIOSK-REC01Software installedHighVLC Media Player 3.0.21
14:18:53LAPTOP-HR07Firewall rule addedMediumUDP 4500 inbound allowed
14:10:01WKSTN-042Policy auto-enforcedInfoUnapproved app removed
14:05:44SRV-DC01Agent check-inInfoFull telemetry received
13:58:12WKSTN-098Registry key changedMediumHKLMHKLM\SOFTWARE\Policies#92;SOFTWAREHKLM\SOFTWARE\Policies#92;Policies
13:45:30LAPTOP-HR07Login eventInfoUser: hr\priya.sharma
13:30:00ALLCompliance scanInfo128 endpoints · 99.2% pass
Connected Agents
128 online
+ Deploy Agent
128
Online
0
Offline
PyQt6
Agent Runtime
60s
Check-in Interval
HostnameAgent Ver.IP AddressCheck-inOSStatus
WKSTN-042Active192.168.1.42Just nowWin 11 ProOnline
SRV-DC01Active192.168.1.1012s agoWin Svr 22Online
LAPTOP-HR07Active192.168.1.712m agoWin 11 HomeOnline
KIOSK-REC01Active192.168.1.918m agoWin 10Online
WKSTN-098Active192.168.1.9810m agoWin 11 ProOnline
Policy Configuration
8 policies
+ New Policy
Policy NameScopeEnforcementLast UpdatedState
Approved Software ListAll endpointsAuto-remove2 days agoActive
Firewall Always OnAll endpointsAuto-enforce1 week agoActive
No P2P ApplicationsAll endpointsBlock + Alert1 week agoActive
No Remote Access ToolsKiosks onlyAlert only3 days agoActive
BitLocker RequiredLaptops onlyReport only1 week agoActive
Registry MonitorServers onlyAlert + Log5 days agoActive
Login AuditAll endpointsLog only1 week agoActive
USB Device ControlAll endpointsBlock + AlertDraftDraft
Features

Everything Your IT Team Actually Needs

Asset Inventory

Automatic discovery and cataloguing of all hardware assets — CPU, RAM, disk, peripherals — updated on every agent check-in.

Software Monitoring

Real-time inventory of every installed application across all endpoints. Flag, block, or auto-remove unapproved titles.

Firewall Management

View, enable, disable, and create firewall rules remotely from the dashboard — no RDP, no VPN required.

Policy Enforcement

Define compliance policies and let Guardian enforce them automatically — blocking installs, triggering alerts, and remediating drift.

Registry Auditing

Monitor critical Windows registry keys for unauthorised changes — with full before/after diff logs per endpoint.

Compliance Reports

Generate and export compliance snapshots to CSV — fleet-wide or per-endpoint — ready for audit submissions.

How It Works

Up and Running in Four Steps

01

Deploy Agent

Install the Guardian agent on each Windows machine via MSI installer. It runs silently as a Windows service.

02

Agents Report In

Each agent collects hardware info, installed software, firewall state, and registry snapshots — then securely reports to the central server.

03

Server Aggregates

The FastAPI server on Oracle OCI stores all telemetry, evaluates policies, and surfaces violations for the dashboard in real time.

04

You Take Control

From the web dashboard — view all endpoints, run remote actions, enforce policies, and export compliance reports in one click.

Technical Specifications

Built for Production

Agent (Endpoint)
LanguagePython + PyQt6
PlatformWindows 10 / 11 / Server
DeploymentMSI Installer (NSIS)
Service modeSilent Windows Service
Resource usage< 40 MB RAM
CommunicationHTTPS · Encrypted
Check-in intervalConfigurable (default 60s)
Server
FrameworkFastAPI + Uvicorn
DatabaseSQLite (upgradeable)
InfrastructureOracle OCI
Reverse proxyCaddy (HTTPS auto)
Process managersystemd / NSSM
ScaleMulti-agent (unlimited)
Uptime99.9% SLA target
Dashboard
TypeSingle-page HTML/JS
AccessAny modern browser
AuthRole-based (Admin / Read)
Data exportCSV · per-endpoint / fleet
Remote actionsSoftware block · FW rules
What Guardian Monitors
Asset inventoryCPU, RAM, Disk, Peripherals
Software inventoryAll installed applications
Firewall stateRules, profiles, status
RegistryKey change detection
Login eventsUser sessions
Network interfacesIP, MAC, connection state
Ready to Secure Your Fleet?

Get a personalised Guardian demo for your organisation — we'll walk you through deployment, policies, and the dashboard live.