One global queue answers two questions: which patches are approved to install anywhere, and how compliant your fleet is against the patches that exist. Approve once, push to every agent instantly.
Try DemoA single global queue governs every patch, with bulk actions and instant propagation to your agents.
Newly discovered patches awaiting a decision.
Cleared to install on every targeted device.
Held back and never offered to agents.
Postponed — automatically returns to Pending once the defer window elapses.
Approve, reject, defer, or reset to pending across one or many selected patches at once.
Approval is fleet-wide; per-policy filtering and deployment rings narrow the rollout to a subset of devices.
Each patch shows install progress and a severity-driven SLA status, so risk is never hidden.
Tightest window — critical patches must land fast.
High-severity patches with a short grace period.
Moderate-severity patches on a monthly cadence.
Everything else, on the most relaxed window.
Patch Management also proves what happened after rollout and shows where your fleet is still exposed.
Every update install is recorded — successes and failures alike — so you can prove what landed, when, and on which devices, and quickly find the ones that need another look.
A planned Vulnerabilities view will load known CVEs from the National Vulnerability Database and cross-reference them against your device inventory, so you can see exactly which managed devices are exposed. This capability is on the NetLock RMM roadmap and is not yet available.
OS and package updates from every major platform are managed in the same approval queue.
Operating-system updates Windows marks as required.
Application updates from the Windows Package Manager.
Application updates from the Chocolatey repository.
Package updates on Debian and Ubuntu families.
Package updates on Fedora and RHEL families.
Package updates on older RHEL-family systems.
Container image updates managed in the same queue.
Patch Management is the global decision layer. Rollout mechanics belong to each policy.
Approve patches once and watch your compliance posture across the whole fleet.
View Pricing