All news

Publisher Trust Score for software inventory

The fleet inventory has always shown what's installed. This week it learned to score it — by who shipped it.

What's new

Why this matters

You can read CVEs all day and still miss a supply-chain compromise — because supply-chain risk is fundamentally about who shipped the bits, not what version they shipped. The Publisher Trust Score is our first attempt at making that question quantifiable.