IT asset tracking software and physical security systems help data centers continuously monitor, locate, inventory, and protect servers, storage devices, network equipment, spare components, and data-bearing media.
Fresh USA combines continuous asset-presence monitoring, rapid data hall inventory, concealed ceramic on-metal tags, exact item search, rack door sensors, monitored security seals, dual-authorization removal, directional exit detection, reader connection supervision, and independent GSM 4G alarm notification.
Know where every critical asset is. Detect unauthorized access, tampering, removal, or attempts to disable monitoring equipment. Find the exact device. Record every security event.
Request a Data Center Project Quote

One System for Inventory, Monitoring, and Physical Security
- 📡 Continuous presence monitoring: Fixed readers report which protected assets are present in each configured room, shelf, cabinet, or equipment zone.
- 🔍 Rapid inventory and exact item search: The F-880 handheld terminal counts equipment and guides the operator toward one selected asset.
- 🛡️ Concealed equipment identification: Ceramic on-metal tags can be installed discreetly inside compatible metal enclosures.
- 🔒 Rack and enclosure protection: Door sensors and monitored security seals detect unauthorized access or tampering.
- 👥 Dual authorization: One employee approves the event in software, while another removes the protected asset within a configurable 1–10 second window.
- 🚨 Controlled-exit response: A directional exit reader can activate connected sirens, strobes, or compatible access-control inputs through local hardware outputs.
- 🔌 Reader connection supervision: Loss of reader Ethernet communication or power creates an immediate PC alert and SQL event record.
- 📲 Independent remote notification: The optional GSM 4G / WiFi alarm kit can send SMS, phone-call, and mobile-app notifications.
The system can protect rack servers, GPU and AI servers, network switches, routers, firewalls, storage appliances, hard drives, enterprise SSDs, NVMe drives, GPUs, processors, memory modules, network transceivers, laptops, test equipment, backup media, spare components, technician kits, equipment cases, and other valuable physical assets.
For a broader solution used across warehouses, offices, production areas, and other business operations, review the Fresh USA inventory tracking system.

Real-Time Smart Shelf and Zone Monitoring
In Smart Shelf mode, compatible fixed readers continuously monitor tagged assets inside configured data halls, server rooms, storage areas, shelves, cabinets, repair spaces, and other controlled zones. The software shows which items are currently present and records when an asset appears in or disappears from a monitored area.
Each zone can have its own name, equipment list, operating mode, current asset status, and event history. Examples include Data Hall A, Server Room 2, Spare Hardware Storage, Secure Equipment Cabinet, Repair Area, and Decommissioned Hardware Zone.
Scalable Coverage for Large and Small Areas
The software supports multiple compatible fixed readers connected through TCP/IP. Reader and antenna configurations are selected according to the required read field, room size, rack layout, equipment density, and asset type.
For example, one F-6950 connected to four circularly polarized antennas can monitor an area of up to approximately 750 sq. ft., depending on the site configuration. Smaller Smart Shelf areas may use an F-950 or another compatible reader configured for a localized shelf, cabinet, or room zone.
Total system coverage is not limited to 750 sq. ft. Additional readers and antenna groups expand coverage across larger data halls, multiple server rooms, storage areas, repair spaces, cabinets, and other monitored locations while sharing the same software and central database.

Concealed Tags, Rack Sensors, and Monitored Security Seals
Concealed Ceramic On-Metal Tags
Compact ceramic on-metal tags are designed for reliable operation on metal surfaces. They can be installed on the interior side of a metal panel inside compatible servers, storage devices, network appliances, equipment cases, and other enclosures.
Concealed installation keeps the identification out of normal view, makes unauthorized removal more difficult, and allows the protected asset to remain detectable. Final tag position and reading performance are confirmed during system configuration because enclosure designs and internal layouts vary.
Server Rack Door Sensors
Wireless contact sensors can monitor selected rack front doors, rear doors, side panels, service compartments, equipment cabinets, spare-parts storage, and backup-media enclosures. Each sensor can be assigned to a specific rack or protected location.
Monitored Tamper-Evident Security Seals
Self-destructing chip tags can be configured as monitored electronic seals for hinged doors, closing shelves, drawers, server access panels, drive compartments, storage containers, equipment cases, and secure component bins.
If the destructible chip is broken or the seal disappears from its Smart Shelf zone without authorization, the system can activate the configured alarm and automatically record the event.

Dual-Authorization Removal and Protected Event History
Sensitive equipment and monitored seals can require coordinated action by two employees:
- An authorized user selects the protected asset or seal in the software.
- The user approves the planned maintenance, access, or removal event.
- The system opens a configurable authorization window from 1 to 10 seconds.
- A second employee physically removes the equipment or breaks the monitored seal within that window.
- The approved action is recorded in the event history.
If removal occurs too early, too late, or without software authorization, the system can activate the siren and create a time-stamped unauthorized-removal or tamper event.
Multiple user accounts and configurable permission levels restrict access to administrative settings, security parameters, and protected event records. Events can include the time, user, asset, reader, and monitored location.

Rapid Inventory and Exact Item Search
The F-880 handheld terminal performs mobile inventory counts and guided item search. An engineer can walk through a server room or storage area, collect multiple asset records, compare detected equipment with the expected inventory, and identify missing, unexpected, or misplaced items.
To find one specific server, storage device, equipment case, laptop, test instrument, or spare component, the operator selects the asset in the mobile application and follows an audible proximity signal. The signal becomes stronger as the handheld terminal approaches the selected item.
This is proximity-guided search rather than GPS. Reading power and search range can be adjusted for the room, rack density, and equipment arrangement.

Exit Protection, Reader Supervision, and Remote Alerts
Directional Exit Detection and Local Hardware Response
A protected server, storage device, laptop, network appliance, equipment case, or data-bearing component crossing a monitored exit without approval can trigger an immediate security response.
The directional overhead reader can activate a connected siren, warning strobe, or compatible access-control input through its local relay output. Because the response is initiated by the reader, basic exit protection does not require the central PC or Microsoft SQL Server to issue the alarm command.
Approved equipment can pass the checkpoint without an unauthorized-removal alarm. Any connection affecting doors or security vestibules must comply with the facility’s access-control, emergency-egress, and life-safety requirements.
Reader Connection and Power Supervision
The software continuously supervises communication with connected readers. If an Ethernet connection is interrupted or power to a monitored reader is disconnected, the communication loss is immediately detected at the central workstation.
🔌 Reader offline: A visible alarm appears on the PC and the incident is automatically recorded in the Microsoft SQL Server event log with the reader, location, and event time.
This detects accidental cable damage, equipment failure, power interruption, or an intentional attempt to disable a reader before removing protected equipment.
Independent GSM 4G and WiFi Alarm Notification
The optional GSM 4G / WiFi Wireless Alarm Notification System adds remote security alerts to the F-930 Anti-Theft / Tracking System. Depending on the configuration, an event can:
- 🚨 activate a local siren;
- 🔊 activate a wireless outdoor solar siren;
- 💬 send an SMS message;
- 📞 make a telephone call;
- 📲 generate a mobile-app notification.
The GSM 4G connection provides an independent cellular notification path when the local PC, Microsoft SQL Server, or facility network is unavailable, provided that the reader, alarm host, SIM service, and connected equipment remain powered and operational.

Software, Microsoft SQL Server, and ERP Integration
The software supports multiple authorized users, compatible TCP/IP readers, fixed Smart Shelf zones, handheld terminals, checkout stations, rack sensors, monitored security seals, controlled exits, and reader-status monitoring within one data center network.
Microsoft SQL Server stores asset records, locations, transactions, users, reader status, and security events. Role-based permissions limit access to administrative functions and protected event history.
Fresh USA software includes an integration connector that can communicate with a customer-deployed web service. Approved asset, inventory, transaction, location, reader-status, and event data can be exchanged with the customer’s ERP or another enterprise application. Data fields, authentication, workflows, and synchronization rules are configured for the project.
SIEM, Observability, and Incident Management Integration
Physical IT asset events can become part of the customer’s broader security operations and observability environment instead of remaining isolated inside a separate asset-tracking application.
Fresh USA software records asset, inventory, location, reader-status, authorization, and security events in Microsoft SQL Server. The Fresh USA Software Integration Connector can communicate with a customer-deployed web service or integration layer so that approved event data can be routed to compatible enterprise platforms.
Depending on the destination platform’s available API and the approved project scope, integration may be configured for systems such as Splunk, Datadog, New Relic, Dynatrace, AppDynamics, PagerDuty, ERP applications, and other customer-operated monitoring or security platforms.
Examples of information available for project-specific integration may include:
- asset presence and disappearance events;
- authorized and unauthorized equipment removal;
- rack door and monitored security seal events;
- controlled-exit alarms;
- reader online and offline status;
- reader communication or power-loss events;
- asset location and inventory changes;
- user authorization and transaction records;
- time-stamped security and equipment events.
Integration availability, authentication, event fields, communication methods, data direction, and synchronization rules are defined for each project. Third-party platforms are not represented as native built-in integrations unless the applicable connector has been implemented and tested for the customer environment.
Compliance and Audit Support
Physical asset visibility, access history, equipment-movement records, reader supervision, monitored rack and seal events, user permissions, and time-stamped Microsoft SQL Server logs can help customers document implemented physical-security and asset-control procedures.
Depending on the customer’s compliance program, these records may support audit evidence associated with frameworks and programs such as NIST SP 800-53, ISO/IEC 27001 and ISO/IEC 27002, PCI DSS, SOC 2, and internal corporate security policies.
Fresh USA provides the asset-tracking technology, monitoring, event recording, and integration capabilities. Compliance assessment, certification, and determination of whether specific audit or regulatory requirements are satisfied remain the responsibility of the customer and its authorized compliance professionals or auditors.

How the Data Center Asset Protection System Works
- Receive and register: Add the server, device, drive, component, or other asset through an Income transaction and connect it to a suitable concealed tag.
- Monitor continuously: Install the equipment in a configured room, rack, shelf, cabinet, or storage zone where fixed readers verify its presence.
- Inventory and find: Use the F-880 for mobile counts, discrepancy checks, and proximity-guided search for one selected asset.
- Authorize removal: One employee approves the event in software, and another removes the asset or monitored seal within the configured time window.
- Detect security events: Rack opening, seal damage, unauthorized disappearance, exit movement, or reader communication loss creates the appropriate alert and event record.
- Respond and notify: Local hardware outputs can activate warning equipment, while the optional GSM 4G / WiFi system sends remote alerts.
- Return and re-protect: Scan returned equipment back into inventory, update its location and balance, and restore active protection.
Comparison with Typical Data Center Asset and Security Systems
Legend: 🟢 Integrated or full capability | 🟡 Limited, optional, or configuration-dependent | ❌ Not normally included
The comparison describes common implementations. Actual third-party capabilities vary by product and configuration.
| Criteria / Function | Typical ITAM / DCIM Without Physical Asset Tags | Traditional Asset Tracking with Standard Passive Tags | Autonomous Biometric Rack Access | Fresh USA Integrated System |
|---|---|---|---|---|
| Continuous physical presence monitoring | ❌ Usually limited to logical status or manually updated records. | 🟡 Possible when fixed monitoring zones are installed. | ❌ Controls rack access, not the assets present inside. | 🟢 Continuous Smart Shelf monitoring by room, shelf, cabinet, or zone. |
| High-value component tracking | 🟡 Often requires manual inspection and serial-number checks. | 🟡 Depends on tag type, placement, and reader configuration. | ❌ Not designed for individual components. | 🟢 Servers, drives, GPUs, NVMe, transceivers, tools, media, and spares. |
| Concealed identification in metal equipment | ❌ Not normally included. | 🟡 Requires specialized on-metal tags and tested placement. | N/A | 🟢 Ceramic on-metal tags installed inside compatible enclosures. |
| Rack and enclosure tamper detection | ❌ Requires separate security hardware. | 🟡 Requires separate sensors or monitored seals. | 🟢 Strong rack-door access control. | 🟢 Rack sensors plus monitored tamper-evident security seals. |
| Dual-authorization physical removal | 🟡 Software approval may be available without timed physical removal. | ❌ Not normally linked to a timed hardware event. | 🟡 Some systems support two approved credentials. | 🟢 Software approval plus physical removal within a 1–10 second window. |
| Exact item search | ❌ Usually manual visual search. | 🟡 Possible with a compatible handheld reader. | ❌ Not intended for asset search. | 🟢 F-880 audible proximity-guided search for the selected item. |
| Reader Ethernet and power supervision | N/A for physical readers. | 🟡 Depends on active reader-status supervision. | 🟡 Controller or lock supervision varies. | 🟢 Immediate PC alarm and automatic SQL record when a reader goes offline. |
| Operation during PC, SQL, or network failure | ❌ Logical visibility and alerts may be unavailable. | 🟡 Centralized response is commonly server-dependent. | 🟢 Local rack controllers may continue operating. | 🟢 Exit reader activates local outputs; GSM 4G provides an independent alert path. |
| Controlled-exit response | ❌ Requires a separate security system. | 🟡 A portal may create a software event. | ❌ Protects rack access, not facility exits. | 🟢 Directional detection with local siren, strobe, or relay output. |
| Event notification and audit history | 🟡 Logical alarms and logs depend on the platform. | 🟡 Reader events can be stored in the connected database. | 🟡 Rack-access events remain in the access-control platform. | 🟢 Immediate workstation alert plus time-stamped Microsoft SQL Server record. |
| Remote alarm notification | 🟡 Usually depends on the normal application and network path. | 🟡 Usually depends on the central software and network. | 🟡 Depends on controller and security-platform integrations. | 🟢 SMS, phone call, and mobile-app alerts through optional GSM 4G / WiFi. |
| Scalability and Enterprise Integration | 🟢 Enterprise software and API options are commonly available. | 🟡 Depends on the selected platform. | 🟡 Primarily scales through additional controlled rack locks. | 🟢 Multiple readers, zones, users, exits, SQL database, web service, ERP exchange, and project-specific SIEM and observability integration. |
Key Technology Advantages
- 🟢 Continuous physical visibility: Know whether critical equipment is physically present in each configured zone.
- 🟢 Supervised monitoring infrastructure: Ethernet loss or reader power interruption becomes a visible and logged security incident.
- 🟢 Hardware fail-safe response: Local exit-reader outputs can activate warning equipment without waiting for the central PC or SQL database.
- 🟢 Independent remote alerts: GSM 4G can deliver alerts outside the normal local-network path.
- 🟢 Dual event handling: Security personnel receive a PC alert while a time-stamped record is created in Microsoft SQL Server.
- 🟢 Insider-risk control: Dual authorization, rack sensors, monitored seals, permissions, and protected event history reduce opportunities for unrecorded removal.
Frequently Asked Questions
Can the system continuously monitor whether a server or device is present?
Yes. Compatible fixed readers in Smart Shelf mode continuously monitor tagged equipment within configured rooms, shelves, cabinets, storage areas, and equipment zones.
Can the system cover a large data center?
Yes. Multiple compatible TCP/IP readers can operate through the same software and database. An F-6950 with four antennas may serve a larger zone, while an F-950 or another compatible reader may serve a smaller localized area.
Is total coverage limited to 750 sq. ft.?
No. Approximately 750 sq. ft. is an example for one F-6950 with four circularly polarized antennas. Additional readers and zones expand total coverage.
Can a tag be installed inside a metal server enclosure?
Yes. Ceramic on-metal tags can be mounted on the interior side of a metal panel inside compatible equipment. Final placement is confirmed during configuration.
What happens if someone disconnects a reader or cuts its Ethernet cable?
The software detects the communication loss, displays an immediate reader-offline alarm on the PC, and automatically records the event in Microsoft SQL Server.
Will the exit alarm work if the central computer is unavailable?
The exit reader can activate connected local outputs without waiting for a command from the PC or SQL database. The optional GSM 4G channel can also send remote notifications when its required equipment and cellular service remain operational.
Can the software connect to our ERP?
Yes. The integration connector communicates with a customer-deployed web service for approved data exchange with an ERP or another enterprise application.
Can access to security records be restricted?
Yes. User accounts and permission levels restrict administrative functions, security settings, and access to protected event records.






