FAQ
Does Ledger manage or remediate anything? No. Ledger is read-only by default -- it never installs an agent or changes a policy, and its connectors only read from your connected systems. The one exception is optional ticket creation, which is switched off unless your account has been enabled for it: where it is on, Ledger can open a ticket in ConnectWise PSA or Autotask from an exception, and nothing else is written back. See tickets and security. Ledger exists to reconcile what your existing tools already report.
What sources does Ledger support today? NinjaOne, Microsoft Intune/Entra, Huntress, SentinelOne, ConnectWise PSA, ConnectWise Automate, Datto RMM, Microsoft Defender, HaloPSA, and Autotask. See Connect a source for each one's setup walkthrough. There is no connector for a DNS filter.
What if a client doesn't use one of these source categories? Ledger never treats "this client doesn't use DNS filtering" the same as "this device is missing DNS filtering it should have" -- see the device matrix for exactly how that distinction is drawn and displayed.
Can I export everything and leave at any time? Yes. The device matrix, exceptions, billing reconciliation, the audit log and anomaly alerts, among other views, export to CSV or XLSX on demand, up to 50,000 rows per export (see exports for the full list), and there is no lock-in mechanism holding your data hostage to your subscription.
Who do I contact with a security question? Contact the Ledger team through your account contact. See security and the in-app Trust page for full detail.