Every device in your fleet dashboard shows a status badge. It's the fastest way to tell, at a glance, whether a device is actively reporting in or something needs a look — but a few of the states are easy to misread if you don't know what's actually being measured underneath.
Each device gets exactly one badge, checked in this order — the first condition that matches wins:
| Badge | What it means |
|---|---|
| Paused | Monitoring is turned off for this device. Checked first — a paused device shows Paused no matter what else is true about it. |
| (a status name, e.g. "Removed") | The device isn't in normal active status. Shows the actual status. |
| Browser Check | This device was added via a one-time browser check, not an installed agent. |
| Offline | The agent has never once checked in. |
| Active | Checked in within the last 15 minutes. |
| Warning | Checked in 15 minutes to 2 hours ago. |
| Stale | Checked in 2 to 24 hours ago. |
| Offline | Hasn't checked in for over 24 hours. |
A device that has never checked in even once, and a device that checked in before but has gone quiet for more than a day, both show the same "Offline" badge. If you're troubleshooting a device that says Offline, it's worth checking whether it's ever reported at all, not just when it last did.
A device added through a one-time browser check was never expected to check in on a schedule the way an installed agent does, so it doesn't get penalized for not doing so — it can sit in "Browser Check" indefinitely without ever showing Offline. That's expected behavior, not a stuck device.
You can pause monitoring on any individual device from your dashboard — this is a permission-based action, available to any team role allowed to manage devices, on every plan. A paused device shows the Paused badge, and its score no longer counts toward your dashboard's "needs attention" total. Pausing changes what the dashboard shows and counts — it doesn't affect whether the device itself keeps checking in in the background. Pro plans and above can also pause or resume every device at once instead of one at a time.
For an agent-installed device, "Last seen" is when the agent last checked in at all — whether or not it happened to run a scan that time. "Last scan" is specifically when the most recent compliance scan actually completed. A device can check in frequently while scans run less often, so don't assume the two timestamps move together.
A browser-check device doesn't have either label — instead you'll see "One-time browser snapshot" and "Last checked," reflecting that it's a single point-in-time result rather than an ongoing check-in.
A status badge tells you something changed about a device, not always exactly why. If a specific device is behaving unexpectedly, its device detail page has the fuller history — what it's checking, when, and what it's found.