SheerSight¶
SheerSight is a security operations (SOC) monitoring control plane. It gives a small team one place to watch detections across an entire fleet of endpoints and cloud sources — and to respond — without punching inbound holes in your network or handing a vendor your secrets.
Docs in progress
These docs are being built out. New here? Start with Getting started.
Why SheerSight¶
- Secret-free control plane. The console stores no long-lived host secrets. Credentials you provide are encrypted in your browser and only ever reach their destination as ciphertext — the platform never sees them in plain.
- Outbound-only agents. Each monitored host runs a lightweight agent that connects outbound. No inbound ports, no port-forwarding, no static IP.
- Signed, allow-listed actions. Every instruction sent to an agent is cryptographically signed and verified, and agents only run a fixed allow-list of actions — never arbitrary commands.
- Fleet-wide view. Detections from many sources and many hosts, unified in one console.
- Runs at the edge. Built on a global network for low latency and resilience, and gated by Zero-Trust access.
Where to go next¶
- Getting started — the concepts and your first host.
- Connecting sources — wire up GitHub, AWS, Google Workspace, and more.
- Operators — day-to-day operation.
- Security — the trust model in plain terms.
- FAQ — quick answers.