I suppose a 6 month time investment into fiddling with the Compliance blade might do the trick, but it'd be much nicer to have things done in the same sort of way Harmony Mobile does.
Just a nice list of applications and their versions.
This is a feature one of our potential customers missed when doing a POC, so I'd love to see it.
In general I feel like Harmony Endpoint isn't getting as much love as it should and it somewhat falling behind in terms of visibility the admin gets.
Threat Hunting is great, don't get me wrong, but it's Cloud exclusive and not all that practical for the more "general" overview. As the name says; it's "Threat" hunting, not "Inventory" hunting.
That said, pratically all the information is already being captured, it just needs to be placed in a usable UI or heck.. even just an export button for a CSV file with options like "Processes which ran on this system".
You can definitely produce such a list by extracting the data directly from the SQLite database on the Endpoint itself, though that's not really scalable (and supposedly it's possible to pipe data into an ELK stack the same way you would to Threat Hunting, though documentation regarding that of course doesn't exist)