Asset Inventory – Flexible Protection Modes
We’re introducing Asset Inventory, giving you more control over how your assets are scanned and how credits / slots are consumed.
What’s new?
New default state for assets
All newly created assets are now Unprotected by default, they are stored in the inventory but no scans are triggered automatically. You can then decide which mode to enable :
➤ EASM protection – Passive scans only
Identity information is added on the asset
Risk Insights can be detected and converted into vulnerabilities
No vulnerabilities are created by Patrowl
Trending Attacks feature can only raise warning assets
Assets are matched with CVEs
➤ Pentest protection – Passive + offensive scans
All EASM checks are performed
Vulnerabilities can be detected
Manual checks are performed
The Trending Attacks feature is fully enabled
Easy activation of EASM protection
You can enable EASM directly from the asset page or from the asset list, making it easy to manage multiple assets at once.
Organization view with quotas
The Organization page now shows at a glance your remaining EASM credits and Pentest slots, so you can monitor your consumption in real time.
Seamless transition for existing assets
Your existing assets have already been automatically transitioned to the new system. No action is required on your side, and they retain the same level of protection.
With these changes, asset management becomes more transparent and flexible : you decide which assets to protect under EASM or Pentest, while keeping clear visibility on credit and slot usage.
Feature Improvements
Vulnerabilities : The chart showing the average time to fix vulnerabilities has been made clearer.
Design Improvements
CVE / Assets : Product names and version numbers in the technologies filter now use distinct fonts for better readability.
Organization : The number of assets, asset groups, and users is now displayed next to each tab name.
Asset groups : Check icons have been refreshed for a more modern look.
Risk insights : The width of the subtopic navigation block is now consistent across pages.
Risk insight policies : Button labels have been updated for greater clarity.
Bug Fixes
E-mails : Export failure e-mail titles now clearly indicate that an error occurred.
Asset - IP : The scan eligibility field is now correctly displayed.
You can access the API Changelog for this version here.