About patchletter

patchletter is a free update radar for sysadmins: pick the software and hardware in your environment and get an email the moment the vendor ships a new release. 1230 products across browsers, operating systems, virtualization, firewalls, network gear, NAS, servers, databases, monitoring and DACH business software. Version data comes from official vendor sources — release feeds, GitHub and GitLab releases and package repositories — and is checked daily. In addition, patchletter cross-references the support cycles from endoflife.date and the CISA KEV catalog of actively exploited vulnerabilities per product. There is no agent and no scanner: you say what you run, patchletter reports updates, an approaching end of support, or an actively exploited vulnerability. The only required datum is an email address; patchletter runs data-minimal, ad-free and tracking-free on its own server in Germany.

Where does the version data come from?

For every product we track one or more official, public sources — vendor release feeds and RSS, GitHub and GitLab releases and tags, package repositories (WinGet, Chocolatey), the endoflife.date support-cycle data, and structured vendor pages. Our crawler checks them daily, uses conditional requests (ETag/Last-Modified) to be gentle, and keeps generous rate limits. New versions are normalized and sorted so the latest release — and the full history — is always accurate.

Our crawler is transparent — see the patchletterBot crawler policy.

How does patchletter flag actively exploited vulnerabilities?

Product pages cross-reference the CISA Known Exploited Vulnerabilities (KEV) catalog. When a product has a vulnerability that is being actively exploited in the wild, we flag it prominently — with the CVE, a link to the authoritative entry, and a ransomware marker where applicable — so you can prioritize patching.

What data does patchletter store?

patchletter is deliberately data-minimal: the only required datum is an email address. No tracking pixels in emails, no advertising cookies, no consent banner, cookieless self-hosted analytics — and application, database and object storage run on our own server in Germany. Every email has a one-click unsubscribe, and you can delete your account and all data with one click at any time.

Who runs patchletter?

patchletter is operated by patchletter UG (haftungsbeschränkt) i. G. in Germany; its Managing Director is Kolja Sagorski. Full details and contact in the legal notice. Missing a tool? Suggest it.