Product

One working record for a changing response scope.

A Campaign is the working record for one advisory, exposure, supplier incident, or investigation. It holds the candidate items, the fields your team chooses, access rules, Work logs, and change history.

A vendor advisory, in the product

One Campaign, 4,315 candidates, five blocked rows.

A vendor publishes an out-of-band advisory. Your inventory and the vendor's device list use different names, and several teams have to confirm versions and reachability. These are screens from that Campaign in the running application.

01 · Bring in the list

The KnownScope import wizard on step four of five, Review. A heading reads Review the exact write plan. Five counters show 4302 creates, 0 updates, 0 unchanged, 0 skipped and 5 blocked. A panel headed create-only defaults shows Assessment set to not assessed, applied only to new Items whose mapped source value is absent or blank. A red banner reads 5 rows need attention, valid rows may still commit, blocked rows remain untouched, with a button to download a correction report.

Scrollable image. Use the arrow keys to move across it.

Synthetic data. A 4,307-row spreadsheet, checked end to end before a single row is written. The five rows it refuses are a missing hostname, two invented values and a duplicated key, and it will hand you a correction report for them.

02 · Work it at size

The Tracked Items tab of the same Campaign showing a count of 4,315 items. A view selector reads Campaign default, with controls to save a view, filter, and choose columns. Rows show item name, assessment state, responsible team, version, external exposure and an inline work log cell.

Scrollable image. Use the arrow keys to move across it.

Synthetic data. 4,315 Items on one list, paged 25 at a time, with saved views per team. No Item became a ticket to get here.

03 · Narrow it without hiding it

The same grid with a filter applied reading Item contains corp.example. The Tracked Items count has dropped from 4,315 to 7. Seven rows show colour-coded assessment states of investigating, affected, not assessed and not affected, each with its responsible team, version, exposure and latest work log entry.

Scrollable image. Use the arrow keys to move across it.

Synthetic data. The filter is visible, the count moves with it, and not assessed is a state of its own rather than an empty cell someone reads as a no.

The product model

The Campaign stays useful as the response changes shape.

Start with a partial candidate list. Add structure as the team learns. Work the list in groups without flattening every Item into the same answer. Publish status from the record the responders use.

  1. Start with the response, not a fixed schema.

    Open a Campaign from a template or a blank page, choose the fields the response needs, and give Owners, Workers, and Viewers the access their role requires.

    • Typed fields and controlled tags
    • Campaign roles, groups, and access grants
    • Safe field changes as the response evolves
  2. Bring in a messy candidate list without losing its source.

    Paste rows or import CSV and XLSX files. Review mappings, invalid values, and duplicate candidates before the list becomes part of the Campaign.

    • Dry runs before an import is committed
    • Source and import provenance on each Item
    • Approved read-only Data Sources for repeat feeds
  3. Update 10 or 1,000 items without creating 1,000 tickets.

    Filter the list, save team views, and apply one decision to a selected group while every Item remains available for its own assessment and follow-up.

    • Fast grid editing and saved views
    • Grouped changes with validation
    • Conflict handling when two updates collide
  4. Give the next shift the reason behind the latest value.

    Attach Work logs to the Campaign and its Items. Keep revisions, mentions, authorship, and change history with the list they explain.

    • Timestamped Work logs and revisions
    • Mentions and bulk notes for handoffs
    • A durable record of field and access changes
  5. Join duplicates without erasing earlier work.

    Use stable identifiers to spot Items that may represent the same system. Review the suggestion, link the records, and reverse the decision if later facts disagree.

    • Canonical identifiers and duplicate suggestions
    • Non-destructive, reviewable consolidation
    • Permission-filtered search across Campaigns
  6. Publish a status people can rely on.

    Set a reporting rhythm, publish a fixed snapshot, and answer leadership questions from the same governed list the response team is working.

    • Scheduled updates, reminders, and overdue signals
    • Leadership views for scope, risk, freshness, and blockers
    • Scoped API credentials and signed webhooks for handoffs

The number you report

A published status keeps the figures it was published with.

When you publish a status update, KnownScope freezes the narrative and the counts together as they stood at that moment. Later work doesn't rewrite what you told people last Thursday, so the record of what you said still matches what you knew.

  • Every field value carries who changed it, when, and through which route: a person, an API credential, or an import run.
  • A revised assessment keeps the earlier one and the reason it changed, so you can reconstruct the decision months later.
  • Work history stays attached to the Campaign it explains. That includes the entries written at 3am by whoever had the shift.

Where it stops

Keep the systems that already have a clear job.

KnownScope sits between the systems that produce candidates and the queue that owns the fix. It doesn't replace chat, evidence storage, scanners, or your change system.

  1. Inputs

    Candidate items and attributes

    Scanner results, inventory, supplier notices, CSV files, and pasted lists.

  2. KnownScope

    Changing scope and its record

    Campaign fields, assessment decisions, Work logs, access, and change history.

  3. Remediation

    The fix

    Jira, ServiceNow, change systems, or the work queue your team already uses.

Conversation
Meetings and chat stay fast. Decisions that must survive the response are recorded in the Campaign.
Evidence
Forensic artifacts, packet captures, and regulated evidence remain in the approved evidence system.
Data movement
Governed files, scoped API credentials, and approved Data Sources use the same validation, permission, and provenance rules.
Connector boundary
Integrations use bounded configuration and audited handoffs. KnownScope does not run arbitrary scripts or unrestricted network requests.
Chat carries live discussion. Evidence stays in the repository approved for it. KnownScope holds the list, the decisions, and the Work log between those systems.

Next step

Use one response to evaluate the product.

Pick an advisory, exposure, supplier incident or investigation you have already worked. We'll map it onto a Campaign and you can see where it fits and where it doesn't.