Six capability areas, each designed to work without privileged access, without vendor lock-in, and without a bill that surprises you at month-end.
A single curl command installs the wt15-server-agent as an unprivileged service user with zero Linux capabilities. The only monitoring agent in its class that makes this guarantee.
NoNewPrivileges=yes — the process cannot escalate under any conditionProtectSystem=strict — entire filesystem is read-only except the state directoryCAP_NET_BIND_SERVICE--upgrade flag — no manual intervention/var/log/wt15-server-agent.logExternal probes run every 60 seconds against your domains, SSL certificates and reachability endpoints — from UK/EU infrastructure, so your latency data is relevant to your users.
SSL/TLS analysis, DNS anomaly detection and domain expiry monitoring are built directly into the platform — no additional licence, no separate toolchain. No other SMB uptime tool offers this breadth.
SSL certificate expiry date only — nothing else in this list.
Governance features that competing products gate behind enterprise plans come standard with WatchTower15. Your team can enforce access control and maintain a full audit trail from day one.
The server agent pushes structured log batches directly to the platform. Logs are stored in VictoriaLogs and S3 simultaneously, giving you fast full-text search alongside durable archival.
Server agent profiles let you define telemetry options, log collection rules and scan schedules once — then push them to all enrolled servers at once, without SSH access.
Talk to us about your infrastructure — we'll show you how WatchTower15 fits into your stack and give you a concrete picture of what your bill will look like.