Windows Patching Automation
Automate Windows OS and third-party patching on your schedule—no code needed. Delay patches for stability, apply best-practice retries, and handle updates to apps like Chrome and Zoom with ease.
Prebuilt automations, scripts, and monitors, ready to deploy into your fleet.
Automate Windows OS and third-party patching on your schedule—no code needed. Delay patches for stability, apply best-practice retries, and handle updates to apps like Chrome and Zoom with ease.
Easily schedule and manage macOS updates—no coding required. Delay patches for stability, apply retries for failed installations, and receive alerts for repeated failures.
Automate Linux OS and third-party updates across various distributions—no coding required. Schedule or trigger on-demand, retry failed patches, and get alerts for repeated failures.
Automate new Mac deployments with one click—apply custom tags, install updates, add local admins, manage power settings, and trigger AV, VPN, or Office 365 automations. Save time, reduce errors, and standardize your onboarding process.
Automatically keep Windows apps like Chrome, Zoom, and Adobe Reader up to date using Winget—no coding required. Schedule or trigger on demand, get alerted if patching fails.
Eliminate the hassle of setting up new Windows devices with this fully customizable and repeatable automation that ensures consistent configurations across endpoints.
Ensure your Windows systems are secure and up-to-date with this automated weekly security check. Covers antivirus updates, scans, firewall, disk health, and more. Alerts you to potential issues so you can focus on other priorities.
Easily keep Windows drivers current with a scheduled or on-demand Automation. Delay updates for stability, automatically retry failed installations, and receive alerts when updates persistently fail.
Keep devices secure with automated Windows Defender updates, scans, and real-time alerts for detected threats.
Automatically detect and disable unauthorized local admins on Windows devices. This automation runs manually or on a schedule, ensuring compliance and security. Pairs best with the “Admin Users Monitor” for seamless enforcement.
Seamlessly upgrade eligible Windows 10 endpoints to Windows 11. This Automation checks hardware compatibility, prompts user approval, initiates the upgrade, reboots the device, and removes the upgrade tag—no coding required.
Quickly notify end-users about unexpected maintenance or outages. Provide clear updates to manage expectations and reduce confusion during service disruptions.
Seamlessly restore access to Windows, macOS, and Linux endpoints after a security lock event. Re-enable user accounts and resume normal operations with minimal downtime.
Trigger end-of-day restarts with ease by applying a “Restart Tonight” tag or manually starting the process. Includes user notifications, customizable timing, and automatic cleanup.
Empower MSPs and IT professionals to involve users in restart decisions with branded, user-friendly notifications. Automate or trigger requests manually or via uptime monitoring policies.
Easily notify end-users of upcoming maintenance windows with fully customizable messages and schedules. Keep users informed and reduce disruption across devices.
Protect sensitive data with ease. Automatically track and erase devices tagged as lost or stolen across Windows, macOS, and Linux.
Logout all users on a device to secure access and enforce compliance policies.
Instantly lock down Windows, macOS, or Linux endpoints by logging out users and disabling accounts. Remotely secure compromised systems with one click or automatic triggers.
Automate Linux onboarding with one click—install updates, add an admin user, upload SSH keys, apply AV and Managed tags, and finalize settings with a reboot. Simplify device deployment, ensure consistency, and save time.
Automate your Linux security and maintenance tasks with this weekly check. Updates packages, checks disk health, audits security settings, and more, ensuring robust and optimized Linux environments.
Automate admin user management on Linux by detecting and disabling unauthorized accounts. Ensure security compliance, prevent privilege misuse, and enforce policies with minimal effort.
Effortlessly deploy SentinelOne on Windows by tagging devices with “S1.” Leverage Level’s custom for the Sentinel Token for flexible configuration and receive alerts for any installation failures—perfect when paired with a monitor for S1.
Easily deploy Prey for Windows with this automation. Run manually or trigger it automatically by tagging a device. If the installation fails, an alert is generated for quick troubleshooting.
Easily install Microsoft 365 (Office) on Windows and macOS with a single click. No coding required. Supports multiple Office versions. Trigger on-demand or automatically using Office tags.
Effortlessly deploy Huntress on Windows by tagging devices with Huntress. Leverage custom fields in Level for the Huntress Token for flexible configuration and receive alerts for any installation failures—ideal when paired with our Security Monitor.
Automate the installation of Cove Backup on Windows devices with a single click. This automation can be run manually or triggered automatically by tagging a device with “Backup.” If the installation fails, an alert will be generated for quick trouble
Proactively clean up disk space with cross-platform scripts and end-user notifications. Trigger manually or pair with a disk usage monitor for automatic execution.
Seamlessly patch Windows, macOS, and Linux systems on a schedule—or on demand—without writing any code. Automatically retry failed updates, receive alerts for repeated failures, and keep all your endpoints consistently up to date.
Streamline new device setups with an automation for installing essential Windows apps using winget. Save time, maintain consistency, and simplify onboarding.
Easily install Axcient x360Recover on Windows, macOS, or Linux—whether you’re using a local server or the cloud. Configure custom fields for quick setup, trigger the install via tag or manual start, and receive alerts for any failed installations.
Automatically detect running services on Windows, Linux, and macOS devices and apply dynamic tags for streamlined monitoring and automation—no coding required.
Re-enable previously locked local user accounts on a macOS device to restore normal access privileges while retaining remote management through Level.
Compare detected macOS admin accounts to your authorized list, instantly identifying any unexpected privilege assignments. Ideal for script-based monitoring and compliance automation in Level.
Detects attached USB drives on macOS by scanning system profiles. Alerts you when a USB device is present, enabling quick responses to potential security risks.
Ensures macOS endpoints maintain the correct time zone, network time sync, and NTP server configuration. Fixes issues automatically and alerts you when inconsistencies occur, helping prevent authentication, logging, and scheduling conflicts.
Checks the firewall status on macOS systems and alerts if it’s disabled. Ideal for script-based monitoring in Level and automated security remediation workflows.
Automatically verify that macOS devices meet minimum CPU, RAM, and storage requirements using Level’s custom fields. Use this script within a script-based monitor to detect non-compliant devices and trigger alerts.
Verifies that a macOS system’s DNS servers match a predefined allowed list, sending an alert if they deviate. Ideal for script-based monitoring and automated remediation in Level.
Instantly log out and lock down all local user accounts on a macOS device, including root, to prevent unauthorized access while maintaining remote management through Level.
Identify and list active admin users on macOS endpoints by verifying account expiration and lock status, ensuring quick oversight of privileged accounts for improved security and compliance.
A one-click script to collect key system and network details on a macOS device, including system info, local and public IPs, Wi-Fi networks, and ARP tables. Ideal for security audits and lost/stolen device tracking.
Frees up disk space by removing outdated temp files, cache folders, old downloads, system logs, and more. Keeps your Mac running smoothly with an automated cleaning process you can schedule or trigger on demand through Level.
Keep your Mac awake while plugged into power. This script disables default sleep behaviors, ensuring continuous remote access, uninterrupted processes, and stable system performance when running on AC power.
Securely erase a macOS endpoint with a single command. This script removes user profiles, applications, browser data, credentials, Wi-Fi networks, SSH keys, and keychains.
Disable or remove unwanted macOS user accounts with a single script. Leverage Level’s “UsersToDelete” variable for easy batch operations and pair it with script-based monitors or automations to maintain secure, compliant endpoints.
Effortlessly re-enable local and domain user accounts on a Windows device. Ideal for restoring normal operations after a security lockdown, unexpected lockouts, or account maintenance routines.
Identify and alert on unauthorized Windows admin accounts by comparing detected users to an authorized admin list. Perfect for script-based monitors, ensuring your environment remains compliant and secure.
Detects and alerts on unauthorized administrator logins within the last hour. Uses a custom field in Level to define authorized admins. Pair with a script-based monitor to automatically generate alerts for unauthorized access attempts.
Scans for USB drives on Windows endpoints. Alerts you if one is detected, enabling proactive security measures in sensitive environments.
Ensures Windows systems remain accurate by checking and setting time zones, verifying NTP server configuration, and confirming clock synchronization. Minimizes time drift with automated corrections and detailed logging.
Checks antivirus and firewall settings on Windows devices via Security Center, flagging any disabled or missing security products. Ideal for a script-based monitor that triggers alerts or automatic remediation if an issue is found.
Checks Windows registry keys for pending reboot indicators. Alerts you when a system restart is required, ensuring updates and configuration changes don’t linger unaddressed.
Checks if at least one Windows Firewall profile is enabled, returning success if a profile is active or an alert otherwise. Ideal for script-based monitors that notify you when firewall protection is missing.
Ensure all Windows devices meet minimum hardware standards by automatically checking CPU, RAM, and storage compliance using Level’s custom fields. Get alerts when devices fall below set requirements.
Checks if the current DNS servers on a Windows machine match a predefined allowed list. Triggers an alert if there’s any discrepancy, helping IT Pros ensure proper network configuration.
Checks Windows disks for early signs of failure using SMART data. Triggers an alert if any disk health status is not “Healthy,” allowing timely repairs or replacements to avoid data loss and downtime.
Scans Windows event logs for common disk-related errors and alerts if issues are found. Ideal for script-based monitoring in Level to proactively address hardware or file system problems.
Verifies that an antivirus recognized by Windows Security Center is active, alerting if no protection is detected or real-time scanning is disabled. Perfect for a script-based monitor and automated remediation in Level.
Quickly logs out all user sessions and disables local or domain accounts on a Windows device. Ideal for emergency lockdown scenarios, stolen hardware, or security compliance efforts to protect systems from unauthorized access.
Quickly identifies which user accounts are actively enabled in the local Administrators group on Windows systems. Use this script to maintain secure user privileges and ensure compliance with least-privileged access policies.
Detects and alerts on any failed login attempts within the last hour. Pair with a script-based monitor in Level to automatically generate alerts for potential unauthorized access attempts.
Detects and alerts on failed login attempts for administrator accounts within the last hour. Pair with a script-based monitor in Level to automatically generate alerts for potential unauthorized access attempts.
Searches Windows event logs for specific event IDs, severities, and sources. If matching events are found within the defined timeframe, it triggers an alert, making it easier to catch critical or error-level events in real time.
A one-click script to collect critical intel on a Windows endpoint, including system details, local and remote IPs, Wi-Fi networks, and ARP tables. Ideal for security audits and lost or stolen device tracking.
Frees up Windows storage by removing temp data, old downloads, and leftover update files. It logs actions, saves you time, and reclaims valuable disk space. Integrate with Level for quick or scheduled maintenance.
Prevent unwanted downtime by disabling sleep on AC power. This script adjusts Windows power settings to ensure systems remain awake and available when plugged in.
Securely erase a Windows endpoint with a single command. This script removes user profiles, browser data, saved credentials, system restore points, event logs, and even wipes all fixed drives.
Quickly remove or disable unwanted local user accounts on Windows devices, using a dynamic script variable for batch processing. Ideal for script-based monitors or automated compliance workflows in Level.
Automatically create a Windows System Restore Point before or after critical actions. Ideal for scheduled automations, such as patching or security checks, ensuring a rollback option is available when needed.
Detects and alerts on administrator logins within the last hour. Pair with a script-based monitor in Level to automatically generate alerts for new admin logins.
Quickly assess whether your endpoints meet Windows 11 hardware requirements. This script validates disk space, memory, CPU specs, TPM version, and Secure Boot status to help you identify upgrade-ready devices.
Effortlessly transition Windows 10 systems to Windows 11. This script downloads and launches the official Microsoft Installation Assistant, automates the upgrade process, and cleans up afterward—perfect for seamless OS migrations at scale.
Quickly remove unnecessary Microsoft Store apps from Windows devices while preserving essential applications. This PowerShell script ensures a clean system by maintaining an audit log and allowing custom whitelist configurations.
Tracks system uptime via OsQuery. Ideal for scripting an alert if a device surpasses a set runtime threshold, helping IT Pros and MSPs know when a reboot or maintenance might be necessary.
Instantly restore normal user and root account access on Linux devices previously locked, preserving remote management through Level.
Cross-check detected Linux admin accounts against your authorized list and quickly alert on any unexpected privileges. Ideal for script-based monitoring and automated compliance checks in Level.
Detects the presence of USB drives on a Linux system. Triggers an alert if any are found, helping MSPs and IT Pros proactively manage data security risks.
Time drift can cause issues with logging, scheduling, and security across Linux environments, often leading to missed backups and failed authentication checks. This script helps IT Professionals and MSPs maintain consistent time settings, protecting
Scans authorized_keys files on Linux systems to detect any SSH keys not defined as authorized. Ideal for script-based monitoring and automated remediation with Level.
Checks for active firewall configurations (UFW, iptables, nftables) in Linux environments. Alerts if no firewall is detected, ensuring critical security measures remain in place. Perfect for script-based monitoring and automated remediation in Level.
Checks for the existence of a specific file on Linux systems. Ideal for script-based monitoring and automated remediation with Level.
Quickly verify if a specific string is present in a Linux file. Perfect for script-based monitoring and auto-remediation.
Ensure Linux devices meet minimum CPU, RAM, and storage requirements using Level’s custom fields. Use this script within a script-based monitor to detect and alert on non-compliant devices.
Verifies the system’s DNS settings match a predefined list. Ideal for using in a script-based monitor via Level to detect and alert on unauthorized DNS server changes.
Terminated active user sessions and locked down all Linux accounts, including root, to prevent unauthorized access while preserving remote control via Level.
Quickly identifies active local admin accounts in the sudo group on Linux systems by checking account expiration and lock status, helping IT pros maintain security visibility and compliance.
A one-click script to collect key system and network details on a Linux device, including system info, local and public IPs, Wi-Fi networks, and ARP tables. Ideal for security audits, network troubleshooting, and lost/stolen device tracking.
Automates disk cleanup on Linux by removing cache files, purging old logs, and pruning Docker and Kubernetes leftovers. Reclaims valuable storage, logs its actions, and supports on-demand or scheduled runs through Level’s platform.
Securely erase a Linux endpoint with a single command. This script removes all user data, system configurations, and even the root filesystem, making the device completely inoperable.
Easily lock or remove Linux user accounts using a simple comma-separated list. Ideal for script-based monitors or automated compliance workflows in Level, ensuring unauthorized users are swiftly disabled or deleted.
This script removes outdated Debian-based Linux kernels, keeping only the two most recent versions. It helps free up disk space and keeps the system clean while ensuring stability.
A script-based monitor that checks Windows MFA settings hourly. If multi-factor authentication is improperly configured, it raises an alert—and automatically resolves once MFA is enabled.
Monitor and maintain Windows Domain Controller services in real time. Automatically restart stopped services and receive instant alerts to prevent authentication and directory service disruptions.
Ensure Veeam backup reliability with automated monitoring. This policy tracks service status, verifies backup completion, and alerts on failures—keeping your data protection strategy running smoothly.
A cross-platform policy that tracks device uptime on Windows, macOS, and Linux, helping you identify systems with excessive or insufficient uptime for optimal performance and maintenance scheduling.
Monitor and alert on system time discrepancies across Windows, macOS, and Linux. Ensure time synchronization to prevent authentication failures, compliance issues, and operational disruptions.
Monitor devices to detect the installation of specific software across Windows, macOS, and Linux. Get real-time alerts when the specified software is found.
Monitor SentinelOne service health across Windows and macOS. Automatically restarts stopped services, triggers alerts, and closes resolved issues—ensuring endpoints remain secure and operational with minimal manual intervention.
Ensure airtight security across Windows, macOS, and Linux systems with this plug-and-play monitoring policy. Detect and remediate DNS, firewall, admin user, sudo user, and SSH key anomalies in real-time—no coding required.
Keep Redis services operational by monitoring their status, restarting stopped services, and sending instant alerts for quick issue resolution.
Monitor and manage PostgreSQL services in real time. Automatically restart stopped services and receive instant alerts to maintain database availability.
Proactively monitor and manage the Nginx service on Linux devices. Automatically restart stopped services, and receive real-time alerts to ensure uninterrupted web server operations.
Monitor devices to detect if specific software is not installed across Windows, macOS, and Linux. Get alerts to ensure critical applications are deployed.
Monitor and maintain HAProxy services on Linux devices. Automatically restart stopped services and receive real-time alerts to prevent load balancer disruptions.
Comprehensive cross-platform monitoring for Windows, macOS, and Linux endpoints. Tracks CPU, memory, disk usage, and uptime, generating actionable alerts for proactive IT management.
This monitor policy includes two pre-configured monitors: one that alerts on failed admin logins and another that alerts on any failed login attempt. Choose whether to monitor all users or just admins and delete the other.
Monitor and manage Microsoft Exchange services in real time. Automatically restart stopped services and receive instant alerts to prevent email downtime.
A cross-platform monitoring policy that ensures devices meet your organization’s CPU, RAM, and disk storage standards, helping you track compliance and identify when replacements are needed.
Ensure Elasticsearch uptime with real-time monitoring, automated restarts, and instant alerts for service interruptions.
Monitors DNS resolution health across Windows, macOS, and Linux. Alerts when devices fail to resolve configured hostnames and auto-resolves when connectivity is restored.
Monitor and alert when a USB device is inserted across Windows, macOS, and Linux. Ideal for high-security environments, it’s easy to deploy and pairs with automated remediation for enhanced protection.
Get instant alerts when unauthorized admin users appear on any Windows, macOS, or Linux device. Maintain security, enforce compliance, and simplify monitoring—no coding required. Pair with remediation automations to automatically disable unauthorized
This monitor policy includes two pre-configured monitors: one that alerts on all admin logins and another that alerts only on unauthorized admin logins. Customize based on your security needs. Windows only for now—macOS and Linux support coming
Proactively monitor and restart 3CX VoIP services to ensure seamless business communication. Get real-time alerts for service interruptions.
No resources match those filters.
No credit card. No sales call. Just sign up and start managing.