AI Insights
AI Insights helps administrators interpret endpoint telemetry, trigger violations, and hardware data using AI-powered analysis. CommandCTRL sends a snapshot of the selected machine’s data to the AI provider you configure and returns a plain-language assessment that you can explore in an interactive chat console.
AI Insights replaces the OpenAI-only integration available in earlier releases. In CommandCTRL 1.5 you can choose from multiple AI providers, select from current AI models, and customize the analysis prompt.
Configure an AI Provider
AI provider settings are located in Settings > Site, in the AI Settings section.
Supported AI Providers
CommandCTRL 1.5 supports the following AI providers, selectable from the AI Type list:
-
AzureOpenAI
-
OpenAI
-
Anthropic
-
xAI
Select Your AI Provider and Add Credentials
-
In the side navigation panel, go to Settings > Site.
-
Locate the AI Settings section.
-
From the AI Type list, select your AI provider (AzureOpenAI, OpenAI, Anthropic, or xAI).
-
In the provider settings section that appears (for example, OpenAI Settings), paste your provider API Key in the API Key field.
-
Click the check mark to the right of the field to accept the API Key. The current key is shown as a masked value. To replace a key, click Clear and enter a new one.
Obtain your API Key and any required organization or endpoint information from your chosen AI provider. The provider charges for API usage according to its own fee structure.
Select an AI Model
-
In Settings > Site > AI Settings, locate the model list beneath your provider’s settings.
-
Select a model from the list. Only current models are shown (models released within the last 365 days).
If your tenant is currently using a legacy model (older than 365 days), it continues to work until you change it. Once you select a current model, the legacy model is no longer available for selection.
Customize the Analysis Prompt (User Template)
The User Template field contains the prompt that CommandCTRL sends to the AI provider along with the telemetry data. You can edit this template to change how results are analyzed and presented, including the intended audience and the rules used to flag findings.
Use AI Insights from the Dashboard (Real-Time)
-
Open the machine dashboard and confirm the toolbar shows REAL-TIME.
-
Click the AI Insights icon in the header of a widget, such as the System widget.
-
The AI Insights console opens for the selected machine and gathers data in three steps: querying CommandCTRL performance data, obfuscating identifying data, and submitting the data payload to the AI provider.
-
Review the AI-generated analysis in the console.
Include Hardware Monitor Data (Windows Only)
-
With a Windows machine’s AI Insights console open, click Submit Hardware Info.
-
CommandCTRL includes the available Hardware Monitor data, such as temperatures and fan speeds, in the analysis.
Use AI Insights in History Playback Mode
-
On the machine dashboard, click View History to enter History Playback mode.
-
Use the date selector and timeline to navigate to the period you want to analyze.
-
Click the AI Insights icon in a widget header.
-
AI Insights analyzes the telemetry for the selected point in time, including any trigger rule violations in that period and Hardware Monitor data if available (Windows only).
-
Review the analysis results.
Get AI Information About a Process
On the Processes screen, you can use AI Insights to look up the manufacturer and a description of a specific process. This lookup uses the AI provider and API Key you configured in Settings > Site > AI Settings (see Configure an AI Provider).
-
Click the Go To Processes icon on any of the Top 5 consumers widgets (CPU, RAM, Disk, or Net). The Processes screen displays, showing data only for the selected machine and the users on that machine; the user names appear under the User column.
-
On the Processes screen, scroll through the list or use the search field to locate the process you want information about.
You can also click any column heading (PID, CPU, Memory, Disk, Network, or User) to sort in ascending or descending order. This is useful for finding the process that is using the most resources.
-
Click the Query Info icon (the AI icon) to the right of the process name. A dialog box opens showing the Process (for example, smss.exe), the Manufacturer of that process (for example, Microsoft), and a description of the process in the Website field.
-
Click anywhere outside the dialog box to close it.
Use the AI Insights Chat Console
The AI Insights console is an interactive chat interface. After the initial analysis, you can continue the conversation about the selected machine.
-
Ask follow-up questions about the analysis.
-
Request data summaries and further exploration of the telemetry.
-
Maintain context across multiple questions in the same session.
Type your question in the field at the bottom of the console, then press Enter or click the send icon.
Understand AI Insights Data Privacy
Before sending data to your AI provider, CommandCTRL automatically obfuscates identifying information. This step appears in the console as “Obfuscating pertinent agent data and hardware info.” Obfuscated data includes:
-
Usernames
-
Hostnames
-
Domain names
-
IP addresses
-
Network SSIDs
-
User file paths
-
Other personally identifiable information (PII)
AI Accuracy Statement
AI Insights uses third-party AI providers to analyze telemetry and generate guidance. Regardless of the AI provider you select, AI-generated responses are based on patterns learned from large amounts of data and may not always be complete, accurate, or up to date.
Always verify any information that AI Insights provides against additional sources and consult experts in the relevant field. AI output should not be used as a substitute for professional advice or guidance.
