Watch the whole portfolio
Organize up to 500 public properties in one monitoring workspace, including brands and internet properties outside a single parent domain.
PRIVATE EQUITY CYBERSECURITY
PatchWindow gives operating and security teams an outside-in view across the portfolio. When CISA adds an actively exploited vulnerability, see which public properties use related technology and where confirmation should begin.
THE ACCESS GAP
Each company has different tools, asset records, and security maturity. A time-critical KEV can trigger dozens of emails before anyone knows which companies are even plausible candidates for exposure.
PatchWindow creates a common passive inventory layer. It does not replace each company’s security program; it tells the operating team where to ask for confirmation and where a broad portfolio-wide escalation would waste time.
WHAT YOU GET
Organize up to 500 public properties in one monitoring workspace, including brands and internet properties outside a single parent domain.
Map new CISA KEV entries to observed technology so outreach begins with the companies most likely to need confirmation.
Show why a property matched, when the technology was observed, and which uncertainty the asset owner must resolve.
WHY TEAMS PAY
The economic value is the time not spent polling every company after every high-profile disclosure—and the response time recovered when one actually matters.
Compare plans →Maintain one current outside-in view across brands, regions, and portfolio companies without deploying software into each environment.
Re-run the technology-to-KEV join as the official catalog changes, rather than relying on an occasional point-in-time review.
Send a scoped worklist with evidence and confirmation requirements instead of forwarding a generic vulnerability bulletin.
Use saved history, dashboards, and API access to make follow-up measurable across companies.
HONEST BY DESIGN
Public technology evidence can identify where investigation is likely to pay off. It cannot reliably prove the affected version, configuration, reachability, or remediation state.
Every PatchWindow result keeps that boundary visible and tells the asset owner what must be confirmed through authorized testing.
COMMON QUESTIONS
No. PatchWindow uses passive public technology observations, so the operating team can establish an initial portfolio view without local deployment.
No. Outside-in evidence is necessarily incomplete, and many vulnerabilities are version- or configuration-specific. The product prioritizes confirmation; it is not a replacement for authenticated asset and vulnerability management.
Blanket alerts create fatigue and consume security time. Technology matching narrows the initial outreach while keeping the limitations visible.
The plan covers up to 500 public properties, daily KEV change monitoring, new-match alerts, a portfolio dashboard, and API access.
FREE DOMAIN PREVIEW
No agent, credentials, or active scan. Upgrade when you need continuous portfolio coverage.