| Type | Host / IP | Vendor | Model | Telemetry | Last Backup | Status | Actions |
|---|
No Network devices discovered yet. Click "Scan Now" to start.
Client Infrastructure & Security Command Center
Client workspaces and licenses are managed centrally in the SuperServer. Generate a client license there and it will appear here automatically.
โ๏ธ Open SuperServer Control PlaneView and manage system administrators
Update your email address to receive MFA codes and alerts globally.
Verification code sent to your email!
Protect your account with multiple authentication methods
Google Auth, Authy, etc.
Receive codes via email
Code sent!
BetterOps OmniTool • Select a module to manage
Manage devices, network, and syslogs
Threat detection, FIM, and compliance
Direct VNC access to endpoints
Real-time chat with end-users
Manage IT Support Requests
Automated Switch/Router Backups
Backup status from any product
Zabbix-style alerts & monitoring rules
Security event logs & login audits
Employee tracking: Active/Idle & Apps
Security event logs & authentication audit trail
| Time | Type | User | Domain | Machine | Source IP | Location | Logon Type | Details |
|---|
No login events found for the selected filters.
| Time | Type | Severity | User | Machine | Source | Event ID | Message |
|---|
No security events found for the selected filters.
| Time | Severity | Alert Type | Source (IP/User) | Message |
|---|---|---|---|---|
| Loading alerts... | ||||
Tactics & techniques mapped across fleet telemetry, authentication events, and correlation alerts
Live agent audit findings, endpoint health verification & incident containment suggestions
| Status | Target Host | Category | Agent Audit Findings & Recommendations | MITRE |
|---|---|---|---|---|
| Evaluating live agent telemetry... | ||||
User behavioral profiles built from login activity.
Additional context
Monitoring rules & alert engine
| Status | Name | Expression | Severity | Scope | Fired On | Actions |
|---|
Variables: {alert_title}, {alert_message}, {severity}, {device_name}, {device_ip}, {timestamp}, {trigger_name}, {reply} (or {ai_reply}), plus every trigger field as {field.name} (e.g. {host.local_ip}, {device.ip}, {cli.command}) and {context_json} for all fields as one JSON object. NCM / Remote fields are listed in their trigger editors.
Allows two-way interaction with OmniTool's AI Agent via this webhook (works for Telegram, Discord, WhatsApp, Slack, n8n, etc.).
Point any external platform or webhook to this URL. Universal parser supports standard chat payloads.
If specified, OmniTool will periodically poll this URL for new incoming messages without needing a public domain or port forwarding.
Leave blank to allow any sender, or specify sender/chat IDs allowed to interact with the AI.
| Time | Trigger | Device | Severity | Message | Ack |
|---|
Define monitoring rules with boolean expressions
Explore all available variables for trigger expressions
process_running('name') ยท
process_cpu('name') ยท
process_ram_mb('name') ยท
software_installed('name') ยท
sensor_value('name') ยท
any_partition_above('field', threshold) ยท
contains(str, substr) ยท
abs(x) ยท min(a,b)
ยท max(a,b)
Real-time IT asset management Latest Agent: vc0ad1954
| Hostname | Group | Local IP | Tunnel IP | Public IP | OS | Agent Version | CPU | RAM (GB) | Last Seen | Status |
|---|
Fetching devices...
No devices found. Ensure agents are running and reporting.
Real-time threat monitoring & compliance
| Hostname | IP | Last Scan | Compliance | AV / Firewall | FIM | Malware | Auth | Threats |
|---|
Loading security data...
No cybersecurity data available yet. Ensure agents are running with the cybersecurity module.
| Severity | Category | Hostname | Description | Timestamp |
|---|
โ No security alerts detected. All endpoints are clean.
Endpoint: โ
IP: โ ยท OS: โ
Fetching endpoint telemetry...
Hardware, network, and system details
Absolute traceability of system event logs
| Time | Level | Channel | Source | Event ID | Message |
|---|
Connect securely and view session recordings
| Status | Hostname | Operating System | Agent Version | Last Seen | Action |
|---|
Please select the session you want to connect to:
Drag & drop computer endpoints between client columns to transfer them instantly
Real-time communication with endpoints
Manage IT Support Requests
Organize devices for scoped triggers and management
| Name | Members | Actions |
|---|
Drag & drop computer endpoints between groups to assign them
Select which webhooks from the Triggers module will receive notifications for new tickets.
| Application | Time Spent |
|---|---|
| Loading... | |
| Browser | Active Page / Tab Title | Time Spent |
|---|---|---|
| Loading... | ||
| Host | Process | Remote IP:Port |
|---|---|---|
| Loading... | ||
Update your email address to receive MFA codes and alerts.
Verification code sent to your email!
Centralized Feature & License Control
Workspace module access (IT Inventory, Cybersecurity, SIEM, Remote Control, etc.) is configured centrally in the SuperServer Control Plane. Changes take effect instantly across all server instances.
Configure a custom SMTP server for this workspace. If left unconfigured, the system default will be used.
SuperServer license validation, agent quotas, and AI token consumption metrics.
This module is not included in your current workspace subscription. Please upgrade your plan to unlock these capabilities.
Global backend metrics and logs (SuperAdmin only)
Security verification required for remote execution
Select how you want to verify your identity:
Self-Hosted Local Infrastructure & Telemetry
-
Auto-discovery, configuration backups, and mass pushes.
| Type | Host / IP | Vendor | Model | Telemetry | Last Backup | Status | Actions |
|---|
Scanning network...
No Network devices discovered yet. Click "Scan Now" to start.
Backup status from any product: Windows Event Log, REST APIs and more
| State | Job | Source | Last result | Last success | RPO | Last 14 runs | Size / Duration | |
|---|---|---|---|---|---|---|---|---|
| Loadingโฆ | ||||||||
A source is a collector: agents reading Windows Event Logs, or this server polling a JSON API. Presets only pre-fill the form; every log name, rule, URL, port and field mapping stays editable.
Employee tracking per host
| Host | Active Time (24h) | Idle Time (24h) | Actions |
|---|---|---|---|
| Loading... | |||
| Device | Type | Associated Credential | Last Backup Time | Status |
|---|