Operate

Monitoring and alerts

Agents report metrics continuously; alert rules turn those metrics into alerts; a deliberate noise policy decides which alerts deserve a ticket. The goal is a queue you actually read.

Alert profiles and rules

Every client runs an alert profile: a set of rules like "disk above 90 percent for 15 minutes is a warning" or "server offline is critical". Built-in profiles cover typical estates; you can clone and tune them, add per-client or even per-device rules, and target rules at servers only or workstations only.

Monitored signals include CPU, memory and disk usage, predicted days until a disk fills, offline state, pending reboots, missing antivirus, a stopped print spooler, a disabled firewall and stale backups.

The noise policy

Alerts and tickets are deliberately not the same thing. Warnings raise alerts but do not create tickets. Only criticals, security findings and backup failures auto-ticket. A human can promote any warning to a ticket with one click. This default exists because a board full of "CPU was briefly high" tickets trains people to ignore the board; you can change it per rule if your process differs.

Health scores

Every device carries a health score computed from its live state: resource pressure, patch debt, protection gaps, backup freshness and pending reboots. Scores roll up to the client and the whole estate, so "which client needs attention this morning" is one glance at the dashboard, which also carries an AI digest of what to look at first.

Predictive disk alerts

Alongside the classic percentage threshold, Helios fits a trend to each disk's usage and estimates days remaining until full. That converts "disk at 91 percent" panic into "this disk has about nine days left", which is a schedulable job instead of an interruption.

The war room

The War Room is a full-screen grid of every device in the estate, coloured and sorted by severity, built for a wall display or an incident. Device groups let you slice big estates (per site, per department) with their own alert profiles.

Alerts can heal themselves. Any alert rule can attach a healing script that runs automatically when the alert fires, documents itself in a ticket, and closes the ticket if verification passes. See Helio AI.