Early access preparation
The Ops Stack Windows Patch Compliance
Know what was intended, what was confirmed in scope and discovered, what became baseline-assessable, and how each coverage and compliance metric was calculated.
An early-access Windows patch-compliance assessment direction for teams that need discovery, confirmed scope, Windows Build + UBR evidence, baseline comparison, visible evidence gaps, and reviewable compliance reporting.
Operator Questions
Questions the assessment is designed to answer.
A green percentage is not enough. The report should show scope, evidence completeness, baseline findings, metric denominators, and the gaps that limit the conclusion.
- What was the declared or intended assessment scope?
- Which discovered Windows systems were confirmed to be in scope?
- Which confirmed in-scope discovered devices produced complete baseline-assessable evidence?
- What Product, Release, Edition, Build, and UBR did each baseline-assessable device report?
- Which applicable baseline was used for each eligible device?
- Which baseline-assessable devices were compliant or ahead of baseline?
- Which discovery, collection, authorization, support, evidence, or baseline gaps remain?
- Can another reviewer recompute the reported metrics from the evidence?
Assessment Flow
Separate discovery, evidence, assessment, and reporting.
Requirements
Exact release requirements are not published yet.
The current design is a Windows assessment utility using directory discovery or explicit hostnames and a constrained evidence-collection path. Supported Windows versions, access requirements, network prerequisites, and package details will be stated explicitly before public availability.
- Authorized Windows systems and an intended assessment scope.
- An applicable maintained baseline for eligible systems.
- A review path for discovery gaps, collection failures, unsupported systems, and other exceptions.
- Environment and operator prerequisites will be published with the release documentation.
Security & Data Handling
Current scope: read-only assessment.
The product is not intended to deploy patches or act as a persistent endpoint-management agent. Exact evidence collected, credential handling, output locations, retention behavior, and any update or licensing traffic will be documented before release rather than inferred here.
- No patch-deployment or endpoint-management capability is claimed.
- The collection path is intended to be constrained to the evidence needed for assessment.
- If released artifacts are code-signed, signing will establish publisher identity and artifact integrity; it will not imply that the software is vulnerability-free or independently endorsed.
Methodology
Three metrics answer three different questions.
Evidence coverage = complete baseline-assessable devices / confirmed in-scope discovered devices. It answers how much of the confirmed discovered population produced complete evidence that could be assessed.
Assessed compliance = compliant + ahead-of-baseline / complete baseline-assessable devices. It answers how much of the population that could actually be assessed met or exceeded the applicable baseline.
Verified compliant population = compliant + ahead-of-baseline / confirmed in-scope discovered devices. It answers how much of the confirmed discovered population can be positively verified as compliant or ahead of baseline.
Declared or intended scope remains important for discovery and reconciliation, especially when an expected device is never discovered. It does not replace the confirmed in-scope discovered denominator in these defined metrics.
Windows Product, Release, Edition, Build, UBR, and FullBuild are version evidence used by the assessment model. They do not prove that every individual Microsoft KB installed correctly.
Evidence States
Keep discovery gaps and non-assessable devices visible.
Availability
Early-access preparation only.
There is no purchase or public download path today. Before availability, this page will state the exact supported requirements, security and data-handling behavior, licensing and support terms, installation/download details, and representative output.
FAQ
Current scope and limitations.
Product Requests
Tell us what the assessment needs to make clear.
Share the discovery, scope, evidence, baseline, compliance, reporting, or exception-handling question you need this product to answer. This is product feedback only: no checkout, preorder, or delivery promise.
