Explainable risk scanning
Lexyte checks installed applications, portable executables, running processes, Windows services, startup entries, scheduled tasks, browser-installed components, firewall exceptions, listening services, active sessions, Remote Desktop, Remote Assistance, and Quick Assist. A name alone is never enough: detections combine publisher signatures, product metadata, original filenames, services, packages, registry evidence, known paths, hashes, and supporting network evidence.
Continuous protection
The paid protection service starts with Windows, monitors recognized process and service activity, stops prohibited tools, adds executable-specific outbound firewall rules, and reapplies protected settings when they change. The dashboard can close without stopping protection.
Emergency Lockdown
One prominent action stops recognized tools and services, disables Remote Desktop and Remote Assistance, and records what happened. Ordinary local access and web browsing remain available unless the Guardian deliberately selects a temporary network block.
Guardian approvals
Approvals can bind to a verified publisher, exact file hash, exact path plus product identity, or a defined expiration. Pausing, settings changes, history clearing, recovery, restoration, and uninstall are guarded by a PIN and printable recovery code.
Private by design
Activity history stays on the computer in a structured local database. Export redacts the user profile path. Lexyte does not collect screens, keystrokes, documents, passwords, clipboard data, browsing history, or unrelated network activity.