Security
Escrow, tamper protect, trust, dual control, evidence — residual risk written up front.
Recovery passwords to the control plane. Full reveal requires hostname type-to-confirm and is audited. Drive inventory shows encryption state per volume.

CrowdStrike-style allow-uninstall token. Live Actions issue key; MSI / --allow-uninstall validates hashed token. Tamper emails admins. Safe Mode residual risk documented.


Posture, encryption, agent health, Lost Mode factors.

Two reviewers for risky grants / Lost Mode.

Lost Mode, tamper, encryption drop.

MDM events + Verify actions.
Enterprise buyers deserve residual risk in plain language.
Ask SecureGen for the IBES architecture brief for Ireland-region deployment.
Request pack