CAPABILITY · INVENTORY

Continuous inventory of your IT fleet.
50+ data points per asset, in real time.

Lightweight agent (<30 MB RAM) on every endpoint + agentless Discovery for everything else. Hardware, software, configuration, patches, users, network, disks, licenses, posture. Updated every 15 minutes. Full history. No manual scans.

Why continuous inventory matters

Without an up-to-date inventory, everything else fails: you can't do compliance because you don't know what you have, you can't optimize licenses because you don't know what's installed, you can't respond to incidents because you can't find affected assets.

80% of companies maintain an Excel inventory updated manually every 6-12 months. It's outdated the moment the file is closed. Itamite solves this: inventory is built and updated automatically, on every agent heartbeat.

THE AGENT

Itamite agent — lightweight, sovereign, multi-OS

Built in Rust. Memory <30 MB. Audited and open source.

Supported operating systems

Windows 10/11 and Windows Server 2016/2019/2022/2025 (x86_64). Linux x86_64 and ARM64 (Ubuntu, Debian, RHEL, Rocky, Alma, openSUSE, Arch and derivatives). macOS 12+ Intel and Apple Silicon. Android 8+ (managed app). iOS via MDM integration (Jamf, Intune, Mosyle, Kandji).

Low resource consumption

Binary <18 MB. Idle RAM 12-25 MB. Heartbeat peak 40 MB. CPU <0.1% average (measured in real fleets). Disk 50 MB local cache. Network ~50 KB per heartbeat (every 15 min).

Connectivity without opening ports

Outbound HTTPS 443 only. Supports HTTP/HTTPS corporate proxy. Works behind NAT, firewall, SD-WAN. No VPN to client required. Mutual TLS with certificate pinning. Automatic reconnection with backoff.

Mass deployment

Native installers: PowerShell for Windows (service with auto-recovery), bash for Linux (systemd) and macOS (LaunchDaemon), APK for Android. Curl/iwr one-liner with install token. Compatible with GPO, Intune and Ansible. Signed MSI/PKG/DEB/RPM on roadmap.

Secure auto-update

Binary signature verification before update. Automatic rollback if new version fails 3 heartbeats. Configurable maintenance windows. Gradual rollout: 1% → 10% → 100%. Version lockable by policy.

Privacy and sovereignty

Data encrypted in transit (TLS 1.3) and at rest (AES-256). Optional BYOK (Enterprise): your KMS key. Data in EU datacenters (Spain, Germany). Zero sub-processors outside the EU. Auditable agent code (open source on GitHub).

USAGE AND OPERATION

How you work with the inventory

01

Global search Ctrl+K

Press Ctrl+K (Cmd+K on Mac) from any page and type what you're looking for: hostname, IP, serial number, user, MAC, installed program. Real-time results as you type. Click → takes you to the asset detail.

02

Combinable advanced filters

Combine any field: "all Windows 11 devices with BitLocker disabled in the Finance department that haven't been patched in over 60 days". Results update instantly. Save the filter as a view to reuse (private or shared with your team).

03

Mass operations with audit

On a filter result you can launch mass actions: execute a command, apply a policy, assign a tag, export to CSV/Excel/PDF. Each action is recorded in the immutable audit with timestamp, actor and per-asset result.

04

Automatic anomaly detection

Itamite alerts when unauthorized software appears, when an asset stops reporting (possible theft or failure), when new unassigned hardware is detected, or when an asset's data changes suspiciously (MAC change, manufacturer change).

FAQ

Common inventory questions

How long to inventory my fleet first time?
After installing the agent, the first complete heartbeat arrives in 1-15 minutes. For a fleet of 500 PCs, in less than 30 minutes you have the full inventory on screen. Data enriches progressively (real software usage, EOL, CVEs) over the first 24 hours.
Does the agent require device reboot?
No. Installed as an OS service without rebooting. It also doesn't interfere with third-party antivirus or EDR — validated with CrowdStrike, SentinelOne, Defender, Sophos, ESET, Kaspersky.
Can I customize what data the agent collects?
Yes. In Configuration → Agent → Collection policy you can disable specific fields for privacy or compliance reasons. The policy is automatically applied on the next heartbeat.
Does the PC user see anything when the agent is installed?
By default, the agent runs as a service without UI. Completely transparent to the user. Optionally you can activate a system tray icon showing the device compliance status ("transparency" mode).
Can I export the inventory to Excel/PDF for audit?
Yes. Apply the filters you need → Export button → choose PDF (formal report with header, pagination, signature) or Excel/CSV (raw data for external analysis). For fleets >200 assets, the export runs in background and you receive email with download link.
What happens if an asset goes offline?
The agent keeps collecting data locally and reports it when connectivity is restored. Accumulated heartbeats are sent in burst when back online. In the inventory, the asset is marked as "Last seen X ago" until it communicates again.
How is a decommissioned asset billed?
If an asset stops sending heartbeat for 30 days, it stops counting as billable automatically. No need to deactivate manually. If it reappears (returns from maintenance, user rejoins), it counts again from the first heartbeat.

Start with inventory in 24 hours

Deploy the agent on 50 pilot PCs and have your full inventory on screen tomorrow.