Patch Reports & Notifications

Patch Reports make it easy for administrators to share patching progress with stakeholders, prove compliance, and track remediation outcomes across operating systems, third-party apps, and deployment jobs.

On This Page

Reports List

To view and manage your reports, navigate to Patch Management > Reports.

This page displays all patch report in your environment. Each row represents a single report configuration and includes:

  • Report Name: The name defined when the report was created.
  • Recurrence: How often the report is generated (One time, Daily, Weekly, or Monthly).
  • Type: The report focus, including Operating System, Third-party Application, or Patch Deployment.
  • Groups: The device groups included in the report scope (for example, All Groups).
  • Enable toggle: Turn a recurring report on or off without deleting it. When disabled, the configuration is retained but the report will no longer run on schedule.

Supported Actions

Use Search by name to find a report directly, or use the filter to narrow results by recurrence, report type, or group.

Click the three-dot menu on any report to access additional actions:

  • View details: Open the report’s detail page for more information.
  • Delete: Permanently remove the report and its generated records.

Create a Report

From the Report list, select Create Report to open the configuration form.

Fill in the required fields, then select Preview to review the output or Save to store the report.

Report Configuration

Report Name: Enter a clear, recognizable name (e.g., OS Patch Status Report) that appears in the report list, header, and email subject.

Generating Schedule: Choose how often the report runs

  • One time: Generated once, manually
  • Daily: Runs automatically at 00:00 (UTC+0) every day
  • Weekly: Runs automatically at 00:00 (UTC+0) every Monday
  • Monthly: Runs automatically at 00:00 (UTC+0) on the first day of each month

Time Frame: Define the reporting window (e.g., Last 7 days or Last 30 days). For recurring reports, this window updates dynamically with each run.

Note Time Frame applies only to Patch Deployment reports. It is not shown for Operating System or Third-party Application reports, which always reflect current posture.

Groups: Select the device groups to include in the report. Choose All Groups to cover your entire environment, or narrow it down to specific groups.

Report Type: Select the focus of the report. This determines the metrics, charts, and details included in the output:

  • Operating System: Provides a comprehensive view of OS patching across selected endpoints, including patch status, approval decisions, and overall device patch posture.
  • Third-party Application: Focuses on patching activity for third-party applications, highlighting available updates, vulnerability exposure, and patch status across endpoints.
  • Patch Deployment: Tracks the execution and outcomes of patch deployment jobs, helping you monitor job progress, success rates, and overall deployment performance.

Detail Report Hierarchy: Define how detailed data is organized in the report, based on the selected report type:

  • Group by Devices: Lists each device with its associated patches, applications, or deployment jobs.
  • Group by Patches: Lists each patch with the affected devices (available for Operating System and Patch Deployment type only).
  • Group by Applications: Lists each application with the affected devices (available for Third-party Application only).

Report Scope Filters: Refine the data set with one or more scope filters. Add filters from the search field; active filters appear as removable chips. Select Reset Filter to clear all scope filters.

Note The available filters depend on the selected Report Type. Groups applies to every type, and Time Frame applies only to Patch Deployment reports; the remaining filters are specific to each type.

Available filters depend on the selected Report Type. Groups and Time Frame apply to all reports, while the rest are type-specific:

List of scope filters for Operating System report type

List of scope filters for Operating System report type

List of scope filters for Third-Party Application report type

List of scope filters for Third-Party Application report type

List of scope filters for Patch Deployment report type

List of scope filters for Patch Deployment report type

Share Report by Email: Enable Share report by email to automatically send reports:

  • Add one or more recipients to receive the report.
  • Customize the email content (a default message is provided)
  • Select the report format: PDF or CSV
  • Tick Summary to include the high-level summary section in the report (available for PDF format only)
  • Tick Detailed Report to include the per-device, per-patch, or per-job detail section.

Note You can update the schedule or recipients anytime by editing the report configuration from the Reports List page.

Preview a Report

After completing the required fields, select Preview to see a sample version of the report. Click the X symbol to close the preview.

Note The preview is a sample for reference only and does not reflect actual generated data. The full HTML report is created only after you Save the configuration.

Select **Preview** to see a sample report

Select Preview to see a sample report

Report Details

From the Reports List, select a report or choose View details to open its detail page. This page serves as the central hub for running, editing, and managing generated copies of a report.

Summary

The header shows the report configuration:

  • Created and Last Updated timestamps.
  • Recurring: the schedule and time frame (for example, One time, Aug 18, 2024 – Aug 18, 2024).
  • Detail view: the selected hierarchy (for example, Group by Devices).
  • Group, Device, Device Status, KB, Severity, and Approval Status: The active scope and filters.

Select Edit to change the configuration, or Generate Now to produce a copy immediately, outside the recurring schedule. Once triggered, generated reports appear in the Generated Reports List.

Generated Reports List

The table lists each generated copy of the report:

  • Generated: The date and time the report was created (UTC). If you see Generating…, the report is still being processed.
  • Recipients: The email addresses the report was sent to, or N/A if it was not shared by email.
  • Type: Manual for reports created using Generate Now, or Scheduled for reports generated automatically based on the set recurrence.

From the three-dot menu on any row, you can:

  • View Report: Open the report in HTML format.
  • Export as: Download the report in your preferred format.
  • Delete: remove the generated copy.

Export a Report

To download a generated report, select Export as from three-dot menu.

In the popup dialog:

  • Choose report format PDF or CSV.
  • Select Summary to include the high-level overview (PDF only).
  • Select Detailed Report to include the per-device, per-patch, or per-job detail section.
  • Click Download to export.

Report Structure

Every generated report follows the same three-part layout, regardless of type:

Cover Page

The cover identifies the report and its scope at a glance:

  • The report title, a one-line description
  • Generated, Schedule, Group, Time Frame, Device, Device Status, Patch, and Patch Status.
  • Job Status, and Deployment Type (only for Patch Deployment report type).
  • A Confidential notice marks the report for internal use only.

Summary

Report TypeShown Info
Operating System
  • Device Summary: Devices with Critical Missing Patches, Missing Patches, Deployment Issues
  • OS Patches Summary: Total missing patches, critical patches, pending approval
  • Missing Patches by Severity: A breakdown of missing patches by severity levels (Critical, High, Medium, Low, and Unknown).
  • Critical Patch Age Distribution: Critical patches based on how long they have been missing (from under 7 days up to 90+ days).
Third-Party Application
  • Device Summary: Devices with Critical CVEs, needing updates, deployment issues
  • Application Summary: Total critical vulnerabilities, applications affected by known CVEs, and patches pending approval.
  • Application by Severity: Grouping applications by their highest active CVE severity level.
  • Application Vulnerabilities Trend: Tracking cumulative CVE exposure across installed application versions.
Patch Deployment
  • Job Summary: Total jobs, executed jobs, total devices targeted, and overall success rate.
  • Device Install Outcomes: Displaying results such as Completed, Install Failed, Incomplete, Partially Installed, Pending Reboot, and Unreachable.
  • Deployment History: Showing completed jobs over time, helping identify activity peaks and high-failure periods.

Detailed Report

Includes the full dataset, organized based on the selected Detail Report Hierarchy.

  • Operating System: Detailed Report can be grouped by Devices or by Patches.
  • Third-Party Application: Detailed Report can be grouped by Devices or by Applications.
  • Patch Deployment: Detailed Report can be grouped by Devices or by Patches.
VariableType to search · ESC to discard
GlossaryType to search · ESC to discard
InsertType to search · ESC to discard
No matches