Solution
Personal devices, without the personal risk.
People will use their own devices. The question is what the device is allowed to do. ZERA opens the application in a browser the server has attested, limits where it can be opened from, and controls what leaves the page.
Before and after
What changes
Today
- Sensitive applications on devices nobody manages
- Either block personal devices or trust them completely
- No way to tell a managed browser from a stranger's
- Nothing to show an auditor about who opened what from where
With Inlinea
- Nothing installed; the Workspace opens in a browser
- Admission for attested browsers, decided on the server
- Country and network limits per application
- ZERA Access Logs and the Browser Security Log for every session
What solves it
The capabilities behind it
- ZERAThe application opens in the browser; the device never joins the network.
- Browser SecurityAttestation, in-page controls, watermark, enrolment approval.
- Country and network limitsAllow and block lists by country and address range, per service.
- EvidenceLaunches, requests and browser events in your logs, with export and retention.
A scenario
How a day goes
- 1A personal tablet at homeThe Workspace opens. The HR portal, marked extension required, asks for the Inlinea extension; once attested, it opens with a watermark.
- 2TravellingFrom a country outside the allow list the payroll system is not offered, and the branded page says so.
- 3A lost deviceRevoke the browser enrolment in the Control Center; its session ends at once and the next request is refused.
Questions buyers ask
What if the person will not install the extension?
Then the resources that require an attested browser stay closed to that browser, and the ones that do not still open. You decide per resource.
Does Inlinea see the person's other browsing?
No. The extension talks only to your deployment and applies policy only on the Workspace and the Protected Resources you mark.