Automatically enabled when you configure RoboShadow permissions in your agent workflow.
What It Does
- Read the organisations your RoboShadow login reaches
- Read devices with their health scores, CVE counts and missing-update counts, and each device’s installed applications, services, disks and hardware
- Read the CVE, CPE and vulnerable-application reports, with CVSS, EPSS and the known-exploited flag, and the fixes RoboShadow lists for each CVE
- Read missing Windows updates per device, and RoboShadow’s remediation attempts with the CVEs each one addressed
- Read antivirus, ransomware protection, detected threats, Windows Defender and firewall status
- Read the users on each device and the Microsoft 365 MFA report
- Read external vulnerability scans and what each scanned IP address exposes
Permission Groups
Every group is read only. Device rows in the other groups still name the logged-on user and carry IP and MAC addresses and serial numbers.
