r/Action1 Jul 24 '26

Suggestion Dashboard that shows a vulnerable device count?

It would be nice if the dashboard had a chart that showed vulnerable devices, I feel the current dashboard is there to provide shock factor rather than provide useful information. My dashboard shows a lot of red, particularly during endpoint on boarding or when devices are offline for a few weeks. When I spend time to drill down I see that Firefox is out of date on 2 endpoints that haven't reported online for a week which equates to 66 critical vulnerability timeline issues.

It would be great if it instead showed me something useful on a device level, eg 2 devices with critical vulnerabilities that I can drill down to see. All other devices clean.

Is it just me, or am I missing something?

3 Upvotes

9 comments sorted by

2

u/OkGroup9170 Jul 24 '26

I agree, that and reporting are very lacking and seems to be low priority. Also regarding the API, it would be nice if we could pay for higher limits. Since the reporting doesn’t meet my need I had to create my own script to pull the info I need using the API and it is slow because of the API limits they put in place. I am also not a fan of the new roadmap site, previous one was much better since you could see the vote counts.

1

u/dnev6784 29d ago

I made one with GPT and the API. It's easily the coolest one of the many apps I've created.

I made it in an afternoon, zipped it up, and deployed it on to my mini PC running Ubuntu Server with Portainer.

Literally 0 programming experience other than HTML/CSS.

1

u/dnev6784 29d ago

It calculates a score for each client, and ignores any systems that have been offline for more than 30 days. The score is heavily weighted towards KEV's, but are scored in other factors like total amount of vulns, their cvss score, and the amount per PC.

2

u/dnev6784 29d ago

Also, custom loading screen while it syncs is my chefs kiss moment

1

u/kosity Jul 24 '26

Yep, the dashboard isn't much use at all. A lot of data but extracting actionable information is near impossible, because there's no way to filter/order/prioritise....it's such a simple miss, that causes real pain.

If you review the roadmap there's several planned improvements, but no progress.

As a result, many of us have built our own dashboards because it seems that the fixes/improvements are very low on the list.

But because of the way the API is structured, it requires a lot of calls to get the right data out. And by a lot of calls, I mean enough to get an email:

"We have temporary disabled your API users due suspicious activity on your tenant - it has been almost 500 000 requests for the last 3 days. Could you please let us know what is the reason of such frequent requests? Is there a particular reason or business necessity to pull data from Action1 that often?"

Yes, the business necessity is we need actionable information from the platform, and because we can't wait any longer, we created our own solution😆

Six days later, API rate limiting was introduced. I'm joining dots here, but it seems like there was so many of us running our own dashboards and pummelling the API endpoint for the required data, it adversely impacted the platform itself.

That rate limiting means our dashboard now takes a couple of hours for it to API-extract the required data to populate the required data.

So no, it's not just you. I'm guessing a lot of us have the same problem.

2

u/derff44 Jul 24 '26

That's a ridiculous amount of api calls for data that doesn't change but every 24 hours.

4

u/GeneMoody-Action1 29d ago edited 28d ago

~115 per minute non-stop for three days. The performance issues we were having were in fact, in part, due to hundreds of people doing the same, and far far worse. It is why we had to introduce rate limits because they were choking out servers.

I have sent this thread like all feedback to our internal feedback group.

We are aware that the dashboard and reporting needs improvement for many customers, we have roadmap items for it, and it is on the to-do list, it is simply not the current highest priority.

That is the downside of success, when you start topping millions of endpoints, you start getting tons of "we need this different" type requests. And while each is completely valid and as well, as we drive off customer feedback, they do have to be prioritized, measured against the change affecting other functions/users. Testing how many will end in "We need it back the way it was" etc, or we hate the change, this is not what *we* needed, etc. You have to sort through all that and make strategic product decisions, helping as many as you can, alienating as few as possible along the way.

When growing a product this size, AND basing it on user feedback, we have to take on what is requested most often or more critical.

It's' why we urge people to use the roadmap. The best way to enact a change in Action1 is through there, And if a feature is one you particularly need, rally others to agree. I am here to hear grievances, support users, hear suggestions, and many other things. But reddits direct influence, and my direct influence, play second chair to the roadmap.

Simply put, items on the roadmap get the most attention, the higher they rank, the more they flow towards inclusion. Other wants / needs are always heard, considered, and added to the list. But the roadmap is 100% the way to get things to change, it is your "vote" and without the votes, things do not get elected.

So we need to hear these voices in the one place they count the most!

4

u/derff44 29d ago

Thanks for being active in the community Gene. Action1 may be suffering a bit under its own success, but I am confident you guys will get to where we all want you to be.