RoboShadow Blog

New in RoboShadow: Patching Compliance Reports, Bulk Service Actions & Auto PSA Remediation

Written by Zaima Lalmahomed | Oct 5, 2026, 3:18:07 PM

As promised, the team have been working hard to keep the releases coming at a steady pace. A lot of what goes into each release comes directly from your feedback, so thank you to everyone who's taken the time to send ideas our way, and please do keep them coming.

The headline feature this time is our Patching Compliance Report (Beta). It's built for anyone reporting against Cyber Essentials or DORA, and shows you which vulnerabilities are still within their remediation deadline and which have slipped past it.

Alongside that, we've released more useful additions across vulnerability reporting, PSA integrations, Windows services and patch visibility, plus some smaller improvements to make the day-to-day a little easier.

In this release:

  • Patching Compliance Report (Beta)
  • Full Vulnerability Report (Experimental)
  • PSA Automatic Remediation
  • Bulk Service Actions
  • Clearer Patch Levels
  • Redesigned Licence & Billing
  • Quality of Life Updates

 

Now Available in The Portal

🔹Patching Compliance Report (Beta)🔹

If you report against Cyber Essentials or DORA, this one is built for you. It turns your live vulnerability data into a remediation view measured against the deadlines those frameworks actually set, so you can see at a glance where you stand and where you're slipping. Cyber Essentials gives you 14 days to remediate once a vendor fix is out, and DORA gives you 7 days from the point a CVE is detected. The report applies the right clock automatically depending on which tab you're on.

  1. Navigate to the Device Engagement tab, click Reports, then Patching Compliance Reports (Beta).

  2. Pick a framework tab at the top: Cyber Essentials (14 day to remediate) or DORA (7 days to remediate).

  3. Use Group by to organise the table by CVE, Application, Severity or Deadline, and flip on Breaching only to show just the ones past their deadline.

  4. Click Download to pull the results out as a CSV.

 

🔹Compile Full Report for Vulnerabilities (Experimental Feature)🔹

Up to now, pulling a complete vulnerability picture meant exporting each type separately and stitching them together yourself. This gives you the lot in a single download.

  1. Enable 'Vulnerability Report' under Experimental Features.

  2. Navigate to the Device Engagement tab, then click Device Vulnerabilities.

  3. On any tab, click the download button on the top right of any vulnerability table.

  4. Click Compile Full Report (the sub-line reads "Every vulnerability type, every device").

  5. A "Compiling Full Report" box runs while it builds. When it finishes, an Excel workbook downloads with a sheet per vulnerability type.

 

🔹Bulk service actions🔹

Managing Windows services one at a time gets tedious fast, especially across a fleet. You can now start, stop or restart several at once straight from the Device Services table.

  1. Navigate to the Device Engagement tab, then click Devices (CyberHeal).

  2. Click into the device you want, then open its Services tab.

  3. Tick the checkbox next to each service you want to act on. A "selected" count appears as you go.

  4. Click the Actions button and choose Start, Stop or Restart. It runs across everything you selected and shows a progress box.

 

🔹Redesigned Licence and Billing area🔹

This area has been rebuilt to make your subscription easier to read and your payment details easier to manage, with proper back and forward navigation so nothing gets lost between pages.

  1. Click your user menu at the top right and choose Plans. That opens the Licence overview, with Licenses and Billing Information tabs.

  2. Open the Billing Information tab and click Manage billing to reach the billing pages. You can also jump straight there from the user menu's Billing item.

  3. Inside billing, use the three tabs to get around: Billing Details, Payment Cards and Invoice History.

 

🔹PSA integration: automatic remediation🔹

If you run a PSA, you'll know the frustration of tickets landing for things RoboShadow could have fixed on its own, so this closes that gap. Application tickets are held back while the platform attempts the upgrade itself, and only raised if the automatic fix keeps failing.

  1. In the top menu bar, click Integrations.

  2. Open the card for your connected PSA (for example ConnectWise, Halo or Autotask). This takes you to the PSA integration settings.

  3. In the integration settings, turn on automatic remediation for application tickets. RoboShadow then keeps the ticket back while it attempts the upgrade itself and only raises it after repeated failed attempts.

 

🔹Clearer patch levels🔹

Windows patching has a detail that trips a lot of people up: two machines can report the same build yet sit on different monthly cumulative updates. The platform now tracks the OS Revision, the UBR or monthly cumulative update level, as part of the operating system's identity, so that distinction is finally visible. You'll see it in three places.

  1. OS Vulnerabilities table: Top menu bar, open Device Engagement, click Device Vulnerabilities, then the OS tab. There is a new Revision column.

  2. Hardware report: Top menu bar, open Device Engagement, click Hardware. The Revision column is included and it is in the CSV export too.

  3. Device Hardware tab: Open any device from your device list and go to its Hardware tab. The OS Revision is shown there.

Quality of life updates

A few smaller improvements that smooth out the day to day:

  • Cyber Heal - Uninstall Agent: You can now uninstall the agent on offline devices. The Agent will be uninstalled and device data removed from the Portal when the device comes back online.
  • Faster vulnerable-device lookups on the Cyber Heal pages, so big estates come back quickly.
  • Clearer SMBv1 benchmark guidance, now showing the exact registry locations and expected values.
  • CSV export and quick filters in more places, including OS Updates, Intune compliance, Microsoft 365 CIS Benchmarks, and history/search on scan pages.
  • Tooltips on the device action buttons, so it's obvious what each one does. 

In other news: If you've been hit by a cyberattack, we'll help for free

Some of you may have already caught the YouTube video we shared recently:

 

This is a reminder that if your organisation or one of your customers has been hit by a cyberattack, the RoboShadow team will help with the clean-up, free of charge.

Send us some evidence of what happened and we’ll give you access to the full version of RoboShadow across the affected environment. We’ll run a complete audit, automatically fix as much as the platform can resolve, and anything that needs manual attention can be raised as a ticket.

It doesn’t matter how large the organisation is, and there’s no requirement to become a paying customer afterwards. Once the clean-up is complete, we’ll simply remove the licences.

If you or one of your customers needs our help, email hello@roboshadow.com and the team will take it from there.

A quick reminder from the previous release

In case you missed the release before this one, there are eight things in the portal worth a look:

  • BIOS CVEs – Now fully released in the portal.

  • Windows Store Apps – Microsoft Store Apps now appear in your Software report.

  • AI Communicate (Alpha) – Use AI to reach out to users and help with software rollouts.

  • CMD Control – Run commands, edit the registry and control PCs through RoboConnect.

  • Vulnerability Scroll – Easily move through the different vulnerability types on the Device Vulnerabilities page.

  • Tenancy Vulnerability Reporting & Fixing – Vulnerability reporting and remediation across organisations in your tenancy.

  • Local User Accounts – See local administrator and Guest accounts across your estate.

  • BitLocker Recovery Keys – View device recovery keys directly in the portal under Data → Disks.


If you haven’t had a chance to explore them, they’re all ready for you to have a play with. And if you haven't signed up for our App Bounty yet, feel free to do so now, as we are giving out gift cards to people who send us good feedback.

Please include 'App Bounty Feedback' in the subject line when sending over any feedback to  hello@roboshadow.com, and the team will make sure it gets to the right place 😊

 

 

If you have any questions, please don’t hesitate to reach out to us at hello@roboshadow.com