Skip to content
Centriu
Centriu Guardianhealth, scam protection and authorized repair for the Windows computersee all systems
Device health and protection

Your Windows computer, cared for and protected before the scam and the breakdown

Guardian installs a lightweight agent on your Windows machine and reads its health through official, read-only APIs: hardware, disk, battery, network, updates and the Windows security posture. It computes a health index on a 0–1000 scale, warns you when something needs attention, checks links and boleto payments before a scam catches you, and applies repairs — always with your authorization.

Get to know GuardianExclusive channel for demos, plans, and purchasing.Compare plans

Windows only · Read-only telemetry · 0–1000 health index · Repairs always authorized · Local-first

Windows
a lightweight agent that runs as a Scheduled Task, without requiring admin
Read-only
telemetry collected through the system's official APIs
0–1000
a transparent health index, with explained factors
Local-first
data in the machine's SQLite; nothing to the cloud without authorization

Why Guardian

The computer breaks without warning — and the scam arrives through the link and the boleto

A filling disk, a pending update, a stopped service: the signs exist before the breakdown, but no one sees them. And, on the same day, a suspicious link or a tampered boleto can cost dearly. Guardian reads the machine's health, explains what needs attention, and helps you check a link and a boleto before the loss.

The machine gives signs, but no one is watching

A nearly full disk, a late update, an unexpected restart, a service that stopped. The signs show up before the breakdown — with no one watching, they become an emergency ticket.

One link is enough for the scam to start

An address that looks like the real one, a freshly created domain. Without checking before opening, it is easy to fall — and the damage has already started on the first click.

The right boleto, with the recipient swapped

Tampered boletos and Pix keys divert the payment without anything looking wrong. Checking the digits and who will receive, before paying, changes the outcome.

What Guardian does

Reads the health, protects from the scam and repairs — always with your authorization

A lightweight agent on your Windows computer, with read-only reading, a transparent health index and anti-scam tools that run locally.

Read-only telemetry, through official APIs

Hardware (CPU, memory, board, BIOS, GPU), disk (model, size and physical health), battery, network, processes, software, updates, unexpected restarts and stopped services — read, never changed.

A health index on a 0–1000 scale

A transparent index on a 0–1000 scale, with the factors behind it explained. No magic score: you see what weighed and why.

Check a link before opening it

Guardian resolves the DNS, checks the IP and the address reputation and, opt-in, looks up the domain registration via RDAP. It does not open the site — it just gives you the verdict before the click.

Check boleto and Pix with local validation

The check is mathematical and local: the boleto's digits and CRC, highlighting who will receive. The data does not leave your machine.

Windows security posture

Guardian reads the state of Microsoft Defender and the threats it detected, plus BitLocker, Firewall and hardening (ASR) — and reports. It observes; the one that protects is Windows.

Safe repair, authorized and reversible

Today the executable action is clearing the DNS cache — and it only runs when you authorize it. There is also parental control and the Simple, Senior and Technical modes.

Want to see Guardian applied to your Windows machines?

Analyze my devices

Install and follow

From the installed agent to the authorized repair

The agent needs to be installed on each Windows machine. From there, collection is local and you follow the machine's health in the panel.

1
Install the agent

The lightweight agent is installed on the Windows machine and runs as a Scheduled Task, without requiring admin. Each device is one installation.

2
Collection happens locally

Read-only telemetry is collected through official APIs and kept in the machine's own SQLite — nothing goes to the cloud without your authorization.

3
Follow health and alerts

The panel shows the health index, the explained factors, the live alerts and the history of that machine.

4
Authorize the repair

When a repair is recommended, it only runs after you authorize it — and it is reversible. The occasional elevation (when needed) goes through UAC.

The panel sees the machine where it is being used, not an entire fleet of several clients in one place.

In action

From a degradation signal to the authorized repair

An illustrative example of the real Guardian flow — it includes the point where the repair requires your authorization. No real IP, machine name, user or numbers.

From the signal to the repair, step by step

Illustrative
  1. Monitored device

    The local agent follows this computer's health with read-only telemetry.

  2. Degradation signal

    A signal appears — for example, a nearly full disk, a pending update or a stopped service.

  3. Explained alert

    Guardian opens an alert and explains the factor behind it, without jargon.

  4. Analysis with history

    The case is analyzed with the machine's history in view and gets a priority.

  5. Recommended repair (requires authorization)

    Guardian recommends a safe repair — which only runs after you authorize it.

  6. Maintenance applied

    Once authorized, the maintenance is applied reversibly.

  7. History updated

    The action enters that machine's history, with what was done and when.

Flow: device monitored by the local agent; a degradation signal (for example, a nearly full disk, a pending update or a stopped service); an explained alert; analysis with history and priority; a recommended repair that requires authorization (control point); maintenance applied reversibly; history updated.

Use cases

Where Guardian fits day to day

Three situations where reading the health and checking before acting changes the outcome.

The breakdown avoided in time

A nearly full disk and a late update show up as an explained alert — you can act before the machine freezes at the worst moment.

The link checked before the click

Before opening a suspicious address, Guardian resolves the DNS and the IP and gives the verdict — without opening the site.

The boleto checked before the payment

The local validation of the digits and the highlight of who will receive help flag a tampered boleto before paying.

Privacy and limits — local-first

What Guardian collects, what it does not do and what always depends on you

Guardian is clear about its limits. It observes and reports; it is not an antivirus, it does not block or remove, and it does not promise to stop every threat.

What is collected × what is not

It collects read-only technical telemetry (hardware, disk, battery, network, processes, software, updates and security posture). It does not read the content of your personal files and does not collect SMART or disk temperature.

Camera and microphone off; password never

Camera and microphone are off by default. Guardian never stores a password or credential — and the boleto and Pix check is done locally, without the data leaving the machine.

Nothing to the cloud without authorization

Data stays in the machine's own SQLite; nothing is sent to the cloud without your authorization, and local retention is configurable.

Repair always authorized and reversible

No repair runs on its own: each action requires your authorization and is reversible. Privilege elevation, when needed, is occasional and goes through UAC.

Guardian observes and reports the Windows security posture; the one that detects and removes threats is Microsoft Defender. It does not replace the antivirus and does not promise to stop every attack or every failure.

Where Guardian starts and stops

Guardian is not an antivirus and is not remote support

Guardian looks after the health and protection of Windows devices. Other products solve nearby but different problems — and Guardian does not replace any of them.

Guardian × antivirus/EDR

Guardian observes the security posture and reports — including by reading the state of Microsoft Defender. It does not block, remove or quarantine. The Windows antivirus does that; Guardian shows how it is doing.

Guardian × remote support

Guardian follows the machine's health without requiring unrestricted remote access. It reads read-only technical telemetry and does not access your personal data — the authorization stays with you at each repair.

This is a differentiation, not an integration. Guardian today observes and reports; it does not block threats, does not fix on its own and does not access personal data. If your operation depends on more than that, talk to us before contracting.

For providers and MSPs

A provider can offer monitoring and preventive maintenance per machine

Support providers and MSPs can use Guardian to offer health monitoring and preventive maintenance to clients — per machine, with training, a contract and consent.

Service per machine

The agent is installed on each Windows computer of the client. The service is offered per device, with the health monitoring and the authorized repairs of each machine.

Training and rules

Offering the service requires training, a contract and the client's consent. The provider works within clear rules, not by unrestricted access.

Without accessing private data

The provider follows the machine's technical health; it does not access the client's personal data, and each repair depends on authorization.

Honest note: aggregating several clients' fleet in a single console is not deliverable yet — today the monitoring is per machine, on the machine itself. The provider does not access private data.

Guardian is billed per device: you pay per monitored Windows machine, not per user.

System plans

Three tiers that unlock more as you grow. On Max, you get access to everything.

Starter

Essentials to start

  • Fleet health console with per-machine view
  • Lightweight Windows agent with hardware, power and network telemetry
  • Live alerts and full per-machine history

Pro

Full operation

  • Fleet health console with per-machine view
  • Lightweight Windows agent with hardware, power and network telemetry
  • Live alerts and full per-machine history
  • Diagnosis with confidence levels and evidence
  • Safe playbook repairs — always with your authorization
  • Multi-client view for IT teams and service providers

Max

Everything

Everything unlocked

  • Fleet health console with per-machine view
  • Lightweight Windows agent with hardware, power and network telemetry
  • Live alerts and full per-machine history
  • Diagnosis with confidence levels and evidence
  • Safe playbook repairs — always with your authorization
  • Multi-client view for IT teams and service providers
  • Failure prediction with horizon and evidence
  • Fleet assistant and technician area
See plans and pricingTalk to a specialistExclusive channel for demos, plans, and purchasing.

Questions

Frequently asked questions

Is Guardian an antivirus?

No. Guardian observes and reports the Windows security posture — including by reading the state of Microsoft Defender and the threats it detected, plus BitLocker and Firewall. It does not block, remove or quarantine threats; the Windows antivirus does that. Guardian shows how your protection is doing.

Which devices can be monitored?

Today, Windows computers. The agent was built for Windows and runs as a Scheduled Task, without requiring admin. Support for macOS and Linux is planned, but not available yet — Guardian, today, is Windows.

Which data is collected?

Read-only technical telemetry, through official APIs: hardware (CPU, memory, board, BIOS, GPU), disk (model, size and physical health), battery, network, processes, installed software, updates, unexpected restarts, stopped services and the security posture (Defender, BitLocker, Firewall, ASR). Guardian does not collect SMART or disk temperature.

Does Guardian access personal files?

No. It reads technical metadata and the system state, not the content of your personal files. Camera and microphone are off by default, and Guardian never stores a password or credential. Data stays in the machine's own SQLite.

Is it possible to run remote actions?

Only safe repairs and always with your authorization. Today, the executable action is clearing the DNS cache; there is also parental control. Nothing runs on its own, everything is reversible, and privilege elevation (when needed) is occasional and goes through UAC.

How do alerts work?

When a health factor changes — a nearly full disk, a pending update, a stopped service, an unexpected restart —, Guardian opens a live alert and explains what weighed. Each machine has its history, with what happened and when.

Is the price per user or per device?

Per device. Billing is per monitored Windows machine — users are not charged. Each computer with the agent installed counts as one device.

Can agencies offer monitoring with Guardian?

Yes, per machine, with training, a contract and the client's consent. The agent is installed on each Windows computer and the service is offered per device. Aggregating several clients' fleet in a single console is not deliverable yet — today the monitoring is per machine, and the provider does not access private data.

Care for and protect your Windows computer before the scam and the breakdown

Install the agent, follow the machine's health, check a link and a boleto before the loss, and authorize safe repairs. Talk about the deployment and see Guardian applied to your devices.

Talk about deploymentExclusive channel for demos, plans, and purchasing.Compare plans