Deploy an Agent
Stand up a self-hosted agent on your own host and enroll it into your fleet.
Agents run on infrastructure you control: a Raspberry Pi on-site, a cloud VM, or a container. A new host can enroll itself into your fleet with a single token.
Once enrolled
- Assign hosts to engagements with scoped roles.
- Agents update themselves and recover automatically.
- Your scanning toolkit refreshes on a schedule.
For the strictest needs, there is also a zero-access, bring-your-own-cloud path that runs the whole platform inside your own account. See the deploy paths for the full set of options.