For teams that work with contractors
Know a contractor's device is secure, before they touch your data
Contractors and freelancers will never be on your MDM, but they still handle your code, systems, and customer data. With Pareto, they run one quick, read-only check and share the result, so you can confirm their laptop is encrypted, up to date, and locked, without managing their machine or seeing a single file.
Free for up to 5 devices. No credit card required.
Onboarding a contractor shouldn't mean trusting their laptop blindly
You bring in a contractor for a few months. They work from their own laptop, on their own network, and you need them productive on day one. But before they reach your repositories, your customer data, or your production systems, you need to know their device is actually secure.
You can't put an MDM (mobile device management tool) on a machine you don't own, and asking for a few screenshots doesn't scale or prove much. So contractor device security usually comes down to a checkbox and a hope.
Proof in minutes, without managing their machine
- 1They install the free app
- The contractor downloads the open-source Pareto app for Mac, Windows, or Linux. No enrolment, and no account needed to start.
- 2It runs a read-only check
- Pareto checks the settings that matter, like encryption, updates, the firewall, and screen lock, and never touches their files, messages, or browsing.
- 3You see the result
- Link the device to Pareto Cloud for a clear pass or fail on every check, plus an audit-ready record, before you grant access.
The checks that decide whether a device is safe to trust
Pareto runs 30+ checks on every device and turns them into audit-ready reports for SOC 2, ISO 27001, and Cyber Essentials, so a contractor's machine counts as evidence, not a gap.
- Disk encryption
- Lose the laptop and the data stays unreadable (FileVault, BitLocker).
- Up-to-date software
- The operating system and key apps carry the latest security patches.
- Firewall and sharing
- The device isn't exposed on the networks a contractor roams between.
- Screen lock
- A password and a short auto-lock protect an unattended machine.
"I work with sensitive customers and projects. Pareto is a very nice tool to make sure that no security feature is forgotten."
Contractor security FAQs
Can I require this before giving a contractor access?
Yes. Many teams make a passing Pareto check part of onboarding, so access is granted only once a contractor's device meets your security bar. The check takes minutes and runs on their own machine.
Will contractors actually agree to install it?
Usually, yes, because it is read-only and open source. It can't see their files, track them, or change anything, and they can read the code to confirm it. That is a very different ask from enrolling in your MDM.
Can it see the contractor's personal files?
No. Pareto only reads security settings, like whether the disk is encrypted or the firewall is on. It can't access files, browsing, or messages, and it can't change anything on the device.
Does it work if the contractor isn't on our network or systems?
Yes. The check runs locally on the contractor's own device, wherever they are. You don't need to manage their machine or put them on your network to get the result.
What happens when the contract ends?
The contractor can remove the app at any time, and you simply stop monitoring their device in Pareto Cloud. There is nothing to unenrol and nothing left behind.
Which operating systems are supported?
macOS, Windows, and Linux, with the same checks across all three.