09
Platform Modules

QStellar Modules.
One Unified Risk Engine.

Nine purpose-built intelligence modules each solving a distinct security problem, all operating on a shared data model within your infrastructure.

Module Explorer

Select a Module to Explore.

01Visibility

QStellar Dashboard

Security Posture at a Glance

qstellar · qstellar dashboard
Live

Screenshot

QStellar Dashboard

Real-time, aggregated view of security posture across the entire environment. Severity-based vulnerability distribution with near-real-time data from all modules.

Total assets & agent status
Severity distribution
Posture indicators
Risk scoring
Architecture

Every Module.
One Deployment.

All nine modules share a single backend, a unified data model, and operate entirely within your controlled infrastructure. No module communicates externally.

Zero external communication ever
Shared data model across all modules
Continuous real-time reconciliation
Endpoint AgentsWin / macOS / LinuxExternal ScannersNmap · Nessus · OpenVASQStellar BackendCentral intelligence layerAI AssistantRAG · On-prem onlyReports & ExportsCSV · PDF · LocalDashboardUnified risk viewCUSTOMER INFRASTRUCTURE ZERO EXTERNAL COMMUNICATION
Core Backend
Data Flow
Isolation Boundary
100% On-Premises
100%
On-Prem
Zero cloud dependency
9
Core Modules
Unified data model
3
Agent Types
Win · macOS · Linux
Zero
Data Egress
Full data sovereignty
Data Pipeline

How Data Flows
Through Every Module.

From agent heartbeat to risk dashboard a continuous, automated pipeline with no manual intervention required.

Continuous no scans, no manual triggers
01

Agent Heartbeat

Agents periodically send system and software telemetry to the QStellar backend. Lightweight, outbound-only, privacy-safe.

02

Normalize & Match

Software data is normalized into CPE identifiers and matched against the QCT Global Security Advisory for CVE correlation.

03

Enrich with Intelligence

Matched findings are enriched with KEV status, EPSS probability, and ransomware association indicators.

04

Risk Engine Scoring

QCT Risk Engine calculates per-asset risk scores using CVSS, exploitability signals, and asset exposure context.

05

Dashboard & Reports

Live risk views, trend snapshots, CSV/PDF exports, and AI insights all generated locally within your environment.

Stays inside your environment
All Modules

Full Module Reference.

All modules operate on a shared data model and unified risk engine.

Visibility

QStellar Dashboard

01

Real-time, aggregated view of security posture across the entire environment. Severity-based vulnerability distribution with near-real-time data from all modules.

Total assets & agent statusSeverity distributionPosture indicators+1 more

Discovery

Assets

02

Centralized inventory of all discovered systems continuously updated through deployed agents. Maps assets to installed applications and detected vulnerabilities.

Agent-based discoverySystem metadata storageAsset-to-vuln mapping+1 more

Detection

Vulnerabilities

03

Version-aware vulnerability findings from agent telemetry. Automatically resolved when patched no manual cleanup required. Stateful and continuously reconciled.

CPE-based CVE matchingKEV & EPSS enrichmentAuto-resolution on patch+1 more

Telemetry

Agent Center

04

Visibility and lifecycle management for all deployed agents across the environment. Windows, macOS, and Linux agents heartbeat-based availability monitoring.

Agent registration & statusHeartbeat monitoringOS-specific agents+1 more

Intelligence

VM Intelligence

05

Advanced vulnerability intelligence from externally uploaded scan reports Nmap, Nessus, and OpenVAS. Fed into the QCT Risk Engine for unified prioritization.

Nmap / Nessus / OpenVASReport ingestion & parsingQCT Risk Engine integration+1 more

Context

News & Recommendations

06

Personalised cybersecurity news, global advisories, and sector-specific recommendations. Supports situational awareness and informed remediation prioritization.

Global CVE advisoriesIndustry specific newsThreat recommendations+1 more

Reporting

QSReportHub

07

Centralized CSV and PDF report generation for vulnerabilities and VM Intelligence. All generated and stored locally never transmitted externally.

CSV & PDF exportsVulnerability reportsVM Intelligence reports+1 more

AI

QStellar AI

08

Automated analysis using Retrieval-Augmented Generation. Deployed per customer no shared models, no memory retention, no data leaving the environment.

RAG architectureStateless inferenceRisk summaries & insights+1 more

Governance

Account & Settings

09

User and role management, platform configuration, and RBAC enforcement. JWT-based authentication with 2FA support and full audit logging.

Role-based access controlJWT authentication2FA enforcement+1 more
Platform Guarantees

Built Different.
By Design.

Every module enforces the same core guarantees not as policy, but as architecture.

Zero Data Egress

No customer data ever leaves the deployed environment.

On-Prem Only

Installed entirely on customer-controlled infrastructure.

Stateless AI

No model training, no memory retention, no cross-session data.

Agent Isolation

Agents communicate only with your QStellar backend.

Audit Logging

All security-relevant actions logged and traceable.

RBAC Enforced

Role-based access control across all modules and APIs.

9 Modules Ready

One Platform.
Complete Risk Clarity.

See all nine modules working together in a personalised walkthrough deployed entirely inside your infrastructure.

100% on-premisesZero data exportAll 9 modules included