One TotalHeal, from the family to the enterprise.
We’re building TotalHeal for businesses on the same platform that protects our home users. It isn’t available yet — here is honestly what’s planned, and how to be first in line.

The planned editions

Central protection for 5–500 people

Device management and policies

Endpoint detection & response

Correlation across endpoint, network, identity, email and cloud

Both, for large organisations

Managed detection & response

Our analysts, 8×5 to 24×7

Linux, Windows Server, containers
Box artwork is illustrative. Device counts and features printed on it are not final — editions, limits and prices will be published here at launch.
TotalHeal Business
Small and mid-size businesses, 5–500 people
Install it and the business is protected. A simple console for devices, policies, web and USB security, patch visibility, alerts and reports — with roles for owners, IT and auditors.
TotalHeal EDR
Enterprises
Deep endpoint visibility: process trees and attack chains, MITRE ATT&CK-mapped detections, incidents, threat hunting and remote response (isolate, kill, quarantine, block) behind approvals and an audit trail.
TotalHeal XDR
Large enterprises
Correlates endpoint, network, identity, email, cloud and browser signals into one incident and attack story, with a unified risk score and policy-controlled automated response.
TotalHeal SOC / MDR
Managed service
Our analysts watch your environment on the same platform — Essential (8×5), Advanced (24×7) and Elite — with playbooks, case management and reports.
TotalHeal Server & workload security
Coming soonFor Linux (Ubuntu, Debian, RHEL, Rocky, Alma, Amazon, SUSE), Windows Server, Docker and Kubernetes hosts. Planned first: a behavioural crypto-mining detector, web-shell and reverse-shell detection, SSH attack monitoring, file-integrity monitoring of system files, persistence checks (cron, systemd, SSH keys, LD_PRELOAD) and exposure checks for databases and admin panels left open to the internet.
Response is always under your control: observe, recommend, approve or automatic — and disruptive actions on production servers always need approval.
One product, one agent
Customers see one TotalHeal, not five separate products. Upgrading from Business to EDR never means reinstalling.
Personal stays personal
On a work-enrolled device the organisation sees only work security data — never personal browsing, files or apps.
AI explains, people decide
AI helps explain a detection; it never decides on its own. High-impact actions need policy and approval.
Be a design partner.
Tell us what you need to protect. Early partners help shape the console and get preferred pricing at launch. We won’t add you to a newsletter.
Or email [email protected].
