Paste your software inventory. See what the vendor no longer supports.
Unsupported Software Finder reads your software inventory line by line and finds every product and version past its vendor's end of support, and every one ending before your next assessment. Paste your software inventory export, one line per product and version. Every line comes back with its vendor support status, the end date and where that date comes from, and every unsupported item with the clause that fails on it: Cyber Essentials, Essential Eight, CIS 2.2, PCI DSS 12.3.4 and NIST SA-22. Nothing is installed and nothing touches your network.
- Paste or drop your inventory export. It is read in your browser: nothing is installed, nothing scans your network, and nothing leaves your browser until you save.
- Product name and version per line is enough. Install count, device group and owner are optional. Export it from your endpoint management or asset tool as it is; the column names are recognised.
- Every support date shows its source and the date we last read it. A version the record does not list is unknown, never supported.
- It never says whether the estate meets an assessment. Every finding names the clause and says what the clause asks.
42 products, 22 past vendor support on 188 devices, 6 ending before the next assessment.
10 of 10 findings raised, 39 of 42 lines placed on a version in the record, 3 not in the record and counted apart.

Paste the export as it comes
One product and version per row: product | version at least, or a header row with any of publisher, install count, device group, owner and exception. The column names endpoint, asset and remote management exports carry are read as they are.
Read the notice line by line
Each line is matched to the vendor's lifecycle record and cycle, and set against the as-at date: past vendor support, extended support only, ending before your assessment, ending within the window, or supported. The strip on every row draws its dates.
Take the clause to the assessment
Ten findings in a fixed order, each naming its lines and the clause from Cyber Essentials, the Essential Eight, CIS Controls v8, PCI DSS, NIST SP 800-53 or ISO/IEC 27001 you ticked. The upgrade plan and the assessor summary are where the answers go.
Why a pasted list, and not a scan
The question the assessor asks first is not about packets. It is: which software do you run, at which version, is the vendor still sending security updates for it, and if not, what have you done about it. The answer sits in the software inventory your endpoint or asset tool already exports. That is what this reads, in your browser, line by line, against the vendor lifecycle record, with the date that record was read.