You have EDR. You have email security. You still don’t know which SaaS apps, AI tools, or risky domains your users hit in the browser until something shows up on a credit report.
Browsing Insights is the Dual-Strike XISEM console for web session telemetry from Anti-Venom Secure Access — duration, categories, AI classification, risky flags, business-hours context, and investigation pivots.
Route: /browsing-insights
What you see
• Sessions over time — Volume trends — did rollout work?
• Top domains / SaaS — Shadow IT and unsanctioned apps
• AI tool usage — ChatGPT, Copilot, Claude, etc.
• Risky / blocked — Policy and reputation hits
• By user / by device — Investigation starting points
• Extension Health — Which browsers report, which don’t
Data flows from Anti-Venom (direct cloud or agent relay — preferred at scale).
How it fits the stack
1. Deploy Dual-Strike XISEM Agent on the endpoint
2. Deploy Anti-Venom (Chrome, Edge, or Firefox — store GA on 8.7.x)
3. Publish browser policy in Settings → Browser Extension
4. Open Browsing Insights — filter by client, user, domain, time range
No manual Supabase URLs for end users. Production posture is agent-gated.
Recent improvements (8.7.0.17 platform)
• Reliable session loading at MSP multi-client scope
• 24-hour default time window (better Monday reviews)
• Extension Health weekend grace — spare laptops aren’t false “not detected” alarms
Tie-in to detections
Browser events feed COBRA² rules: shadow AI, DLP-class categories, exfil patterns. Turn on browsing first; tune detections second.
Start here
1. Pick one pilot client with agent + extension deployed
2. Confirm Extension Health shows green/idle — not “not detected”
3. Review top domains and AI sessions for a week
4. Add one COBRA rule for your highest-risk category
Docs path: Support wiki → Anti-Venom & Browsing Insights · dual-strike.com/downloads
Retention follows platform policy — aggregate reporting for large fleets should use rollups where available.


