Assets
Asset management grounded in what was actually discovered.
Assets builds hardware and software lifecycle records directly from Pathfinder's discovered CI data — not from manual entry or spreadsheet imports. HAM and SAM in a single fabric, natively populated into ServiceNow without ETL overhead.
Asset programmes fail because the data underneath them has never been trusted.
Most IT asset management programmes start with a spreadsheet, migrate to a tool, and immediately begin fighting data quality. Software licences are reconciled against what IT thinks is deployed, not what's actually running. Hardware assets include equipment that was decommissioned two years ago. Nobody trusts the register, so nobody acts on it. Assets solves this at the root: the CI inventory is discovered, not declared, and the asset lifecycle record is built on top of that foundation.
Every asset record starts
with what Pathfinder found.
Most ITAM programmes start with a spreadsheet import and immediately begin fighting data quality. Assets starts differently: the CI is behaviorally discovered first, then the asset record is built on top of that foundation — enriched with lifecycle attributes, matched against EOL databases, and written natively into ServiceNow. Zero manual entry in the chain.
Pathfinder's eBPF agents observe the CI communicating on the network before any asset record exists. The record reflects reality from day one.
Every discovered CI is matched against vendor end-of-life and end-of-support dates automatically. No cross-referencing vendor lists, no manual tracking.
Hardware lifecycle and software licence records live in the same bitemporal fabric — sourced from the same discovery layer, with no data gap between them.
Assets writes directly to ServiceNow's HAM and SAM schemas via the patent-protected integration layer — no ETL middleware, no sync jobs.
Entitlements matched to
what was actually installed.
Pathfinder's behavioral agents observe every running process and binary — not what the software agent reports, not what a registry scan finds, but what the environment is actually executing. Assets continuously matches that installation evidence against your licence entitlements in real time. Over-deployments surface immediately. Under-utilisation is identified before renewal. When a violation is detected, a remediation task is created automatically in ServiceNow — no manual audit trigger required.
Every running process observed by eBPF agents. Software is counted from what the environment runs — not from self-reporting or registry scans that miss ephemeral or containerized installs.
License seats are matched against discovered installs continuously. The delta updates the moment installs change — no scheduled reconciliation, no quarterly spreadsheet.
Violations flow directly into a ServiceNow remediation task. Assign additional licenses, reclaim from inactive users, or escalate to procurement — tracked and auditable.
Assets identifies licenses assigned to users who haven't launched the software in 60+ days and surfaces reclamation candidates automatically, ready for one-click action.
SaaS discovered from
behavior, not from IT's list.
Traditional SaaS inventories depend on employees telling IT what they use, or on SSO integration that only sees managed apps. Assets discovers SaaS from behavioral signals — Pathfinder observes network connections to known SaaS endpoints and infers active usage, user count, and spend exposure. Shadow SaaS surfaces automatically. No employee survey. No integration required for detection.
Pathfinder observes outbound HTTP/HTTPS connections to known SaaS endpoints and classifies the application — regardless of whether it appears in your SSO provider or software catalog.
Apps used by employees that have not been approved, contracted, or even known to IT surface as shadow findings — with user counts, active usage rates, and estimated cost exposure.
For managed SaaS, Assets tracks seat allocation against observed active users. Unused seats and renewal over-spend are surfaced before the next contract window.
Shadow SaaS findings flow into a ServiceNow governance task: approve and onboard, block at the network layer, or flag for security review. Full audit trail maintained.
Audit-ready before
the vendor calls.
A vendor audit letter typically gives 30 days to produce evidence of entitlement and installation records across all of their products. Traditional ITAM programmes spend that entire window manually assembling data. Assets maintains a continuously updated, cryptographically chained evidence store — every installation event, licence assignment, and entitlement change is recorded with a signed timestamp. When the audit arrives, the evidence package is already there.
Every asset state is stored with two timestamps: when it happened in the real world, and when it was recorded. Any past configuration can be replayed exactly as it existed — including during the audit period in question.
Every installation event, licence assignment, and entitlement change is written to an append-only, hash-chained log. The chain integrity is verifiable end-to-end — no record can be altered retroactively.
Generate a point-in-time licence position report for any date, any product, any scope — in minutes. Export to the vendor's preferred format directly from ServiceNow.
Rather than scrambling at audit time, Assets maintains a real-time compliance score per product family. When a vendor audit arrives, the position is already known — gaps are addressed before they become findings.
Refresh planning driven
by what GPS actually sees.
Hardware refresh decisions are traditionally made from spreadsheets that nobody trusts — purchase dates are wrong, device lists are incomplete, EOL databases are manually maintained. Assets replaces that with continuous lifecycle tracking grounded in Pathfinder's behavioral discovery. Every device's lifecycle stage is computed from its observed behavior and matched against vendor EOL/EOS dates. Refresh cohorts are identified automatically, grouped by hardware family, and surfaced with lead-time recommendations before urgency forces reactive procurement.
Lifecycle stage is derived from observed device behavior and matched vendor EOL data — not from purchase date fields that are frequently wrong, blank, or based on the wrong asset record.
Every discovered hardware CI is continuously matched against vendor end-of-life and end-of-support dates. When dates shift (vendor extensions, early EOLs), the match updates automatically.
Assets groups EOL candidates by hardware family and expected refresh lead time, surfacing batched procurement opportunities rather than one-off emergency replacements.
Hardware approaching EOL is flagged as a health risk in Bearing. The tech debt score for CIs in the EOL window reflects the increased operational and security risk of running past end-of-support.
9 processes. Out of the box.
Every standard ITAM workflow ships pre-built — each one grounded in what GPS actually discovered, not what someone typed into a form.
Assets auto-stages devices for refresh from observed EOL/EOS dates — no spreadsheet, no manual triage.
Immutable chain-of-custody from decommission request to ITAD sign-off, bitemporal-stamped at every step.
Every state transition is a versioned asset event — location, owner, and config changes never drift or disappear.
POs link directly to CIs on delivery — asset records are pre-populated before the device leaves the dock.
Reconcile physically scanned assets against GPS discovery in real time — gaps surface immediately, not at quarter-end.
Idle assets flagged by Pathfinder behavioral signals — not just offboarding tickets or stale help-desk requests.
Owner and cost-centre changes preserved with full bitemporal history — finance and compliance always see the right owner.
Unused seats harvested from observed utilisation data — not last-login timestamps that overstate actual use.
Scheduled compliance posture run per product family, surfacing gaps before the audit window opens.
Asset management beyond the data centre.
The same discovery-grounded, bitemporal approach extends to asset classes that traditional ITAM and CMDB tools have always treated as out of scope.
Operational technology — PLCs, SCADA systems, industrial controllers — have unique lifecycle and security requirements that traditional ITAM ignores. GPS will extend behavioral discovery to OT environments using passive network observation and protocol fingerprinting, surfacing OT assets into the same bitemporal fabric without disrupting production environments.
- —Passive OT network observation
- —Protocol fingerprinting (Modbus, DNP3, BACnet)
- —OT-specific EOL / vulnerability matching
- —Purdue model zone classification
Medical devices require lifecycle tracking that satisfies both ITAM and regulatory obligations — FDA UDI tracking, IEC 62443 alignment, and audit trails for biomedical engineering. GPS will discover medical devices from network behavior and integrate with vendor UDI databases, maintaining a continuously updated device inventory that satisfies compliance requirements without manual data entry.
- —FDA UDI database matching
- —Biomedical device lifecycle tracking
- —Regulatory audit chain
- —Vendor EOL aligned to FDA recalls
Physical enterprise assets — AV equipment, facilities hardware, vehicles, specialized equipment — exist outside traditional CMDB scope but create real operational and financial exposure. GPS will extend asset lifecycle management to non-IT physical assets using IoT sensor integration and QR/RFID tagging, bringing them into the same discovery-grounded lifecycle fabric.
- —IoT sensor integration
- —QR / RFID tagging pipeline
- —Physical asset lifecycle stages
- —Facilities and non-IT asset coverage
Four steps, end to end.
Discover hardware and software inventory
Pathfinder's behavioral discovery surfaces every hardware CI and installed software package — including assets that never appear in a network scan. The asset register starts with what's real.
Build lifecycle records from discovered CIs
Asset lifecycle attributes (purchase date, warranty status, EOL/EOS dates, location, owner) are layered onto discovered CIs. No manual data entry, no spreadsheet merge.
Reconcile software licences against actual usage
Installed software packages are matched against licence entitlements. Over-licensed and under-licensed positions are identified automatically — including software running on hardware that isn't in the official register.
Populate ServiceNow HAM and SAM natively
Asset records are written directly to ServiceNow's HAM and SAM schemas. No custom middleware, no ETL pipeline, no data quality degradation in transit.
Built for the people who own this problem.
IT Asset Manager (ITAM)
A hardware and software register that is grounded in discovered reality — not a spreadsheet that drifts from day one.
Procurement / Finance
Accurate licence entitlement and utilisation data to optimise spend and avoid audit exposure.
CIO
Confidence that the organisation's asset estate is fully accounted for, including EOL exposure and licence risk.
CISO
Visibility into end-of-support software and hardware running in the environment — a key attack surface indicator.
Built different.
Four capabilities you won't find assembled anywhere else.
Discovery-grounded asset records
Every asset is a discovered CI.
Other asset management tools accept whatever data you import. Assets starts with behaviorally discovered CIs from Pathfinder — so every asset record is grounded in observed reality, not declared inventory. Assets that stop communicating are flagged automatically.
HAM and SAM in one fabric
No separate tools, no data gap.
Hardware and software asset lifecycle run on the same bitemporal data fabric. A server's hardware warranty, the OS licence, and every application installed on it are managed together — with full history and immutable audit trail.
Automated EOL/EOS detection
Know before the vendor tells you.
End-of-life and end-of-support dates are continuously matched against discovered CIs. When a device or software version approaches EOS, the asset owner is alerted — before it becomes a security exposure or a compliance finding.
Native ServiceNow HAM/SAM population
No ETL. No middleware.
Assets writes directly to ServiceNow's HAM and SAM schemas via the patent-protected integration layer. No custom connectors, no batch synchronisation jobs, no data quality risk in transit. The asset data in ServiceNow is as current as Pathfinder's last discovery pass.
How Assets stacks up.
18 capabilities across discovery, lifecycle, asset reputation, and platform depth.
All third-party product names and logos are trademarks of their respective owners and are used for identification and comparison purposes only. Comparisons are based on publicly available product documentation as of 2025–26 and reflect Avennorth's good-faith assessment; they do not imply affiliation, sponsorship, or endorsement.
Indicators and intelligence,
grounded in this product.
Intelligence classifies each asset's lifecycle stage from behavioral discovery signals — utilisation patterns, license event history, and CI relationship activity — without requiring manual status updates. Competing lifecycle hypotheses are falsified against observed data.
- —Asset lifecycle stage
- —Age-vs-utilisation ratio
- —Refresh urgency score
- —EOL proximity index
- —License compliance posture
- —Entitlement vs. install ratio
- —SAM gap score
- —Audit readiness score
- —Spend-vs-utilisation score
- —Rationalisation savings estimate
- —Vendor concentration risk
- —Contract renewal risk
Where Assets fits in the platform.
Assets inherits every improvement to Pathfinder discovery quality. Better discovery means a more accurate asset register — automatically, with no re-import cycle.
Receives from
Explore the platform
Get started
See Assets in action.
Thirty minutes. A live environment. Real findings from your own data.
Book a Demo