# Idemeum Docs ## Docs - [Allowlisting events](https://docs.idemeum.com/allowlisting/allowlisting-events.md): Idemeum tracks every execution across your workstations and represents each application as an event in the cloud. - [Allowlisting overview](https://docs.idemeum.com/allowlisting/allowlisting-overview.md): Control what is allowed to run on Windows and macOS, block malware. - [Allowlisting rules](https://docs.idemeum.com/allowlisting/allowlisting-rules.md): With rules you define what is blocked and what is allowed in your environment. - [Allowlisting control mode](https://docs.idemeum.com/allowlisting/app-control-mode.md): Configure how idemeum agent is enforcing allowlisting rules on each endpoint. - [Application catalog](https://docs.idemeum.com/allowlisting/application-catalog.md): One-click rules to allowlist and automatically elevate applications. - [Application fencing](https://docs.idemeum.com/allowlisting/application-fencing.md): Application fencing controls what applications can do once they are running. - [Confidence score](https://docs.idemeum.com/allowlisting/confidence-score.md): Each application is assigned a confidence score to determine how safe the application behaves - [Enable allowlisting](https://docs.idemeum.com/allowlisting/enable-allowlisting.md): Enable allowlisting for your organization. - [Events deep dive](https://docs.idemeum.com/allowlisting/events-deep-dive.md): Deep dive into how allowlisting events work for major use cases. - [Malware reputation](https://docs.idemeum.com/allowlisting/malware-reputation.md): Each executable is scanned for malware using Sophos Intellix platform - [Publishers view](https://docs.idemeum.com/allowlisting/publishers-view.md): Discover all publishers in your environment - [Snooze pop ups](https://docs.idemeum.com/allowlisting/snooze-pop-ups.md): Prevent multiple block pop ups for the same application. - [Allow verified publishers](https://docs.idemeum.com/allowlisting/verified-publishers.md): Automatically trust all verified publishers on Windows and macOS. - [Create Plant](https://docs.idemeum.com/api-reference/endpoint/create.md): Creates a new plant in the store - [Delete Plant](https://docs.idemeum.com/api-reference/endpoint/delete.md): Deletes a single plant based on the ID supplied - [Get Plants](https://docs.idemeum.com/api-reference/endpoint/get.md): Returns all plants from the system that the user has access to - [New Plant](https://docs.idemeum.com/api-reference/endpoint/webhook.md): Information about a new plant added to the store - [Introduction](https://docs.idemeum.com/api-reference/introduction.md): Example section for showcasing API endpoints - [Agent branding](https://docs.idemeum.com/branding/agent-branding.md): Customize how login screen looks when idemeum agent is installed. - [Changelog](https://docs.idemeum.com/changelog.md): Product updates and release history. - [Agent health status](https://docs.idemeum.com/desktop-agent/agent-health-status.md): Track agent last check-in time to monitor health. - [Agent identifier](https://docs.idemeum.com/desktop-agent/agent-identifier.md): Every Windows idemeum agent is identified by a unique registry key. - [Install agent](https://docs.idemeum.com/desktop-agent/agent-install.md): Install idemeum agent on Windows or macOS. - [Agent logs](https://docs.idemeum.com/desktop-agent/agent-logs.md): Idemeum agent logs to troubleshoot misconfigurations. - [Agent requirements](https://docs.idemeum.com/desktop-agent/agent-requirements.md): The following requirements apply to idemeum Windows and macOS agents. - [Agent troubleshooting](https://docs.idemeum.com/desktop-agent/agent-troubleshooting.md): When you have agent installation issues, follow these steps to diagnose the problems - [Uninstall agent](https://docs.idemeum.com/desktop-agent/agent-uninstall.md): Uninstall idemeum Windows or macOS agent. - [Update agent](https://docs.idemeum.com/desktop-agent/agent-update.md): Desktop agent can be automatically or manually updated. - [Account auto downgrade](https://docs.idemeum.com/epm/account-auto-downgrade.md): Automatically downgrade admin accounts on your workstations. - [Admin elevation notifications](https://docs.idemeum.com/epm/admin-elevation-notifications.md): How IT admins receive notifications when users request elevations. - [Admin / user elevation](https://docs.idemeum.com/epm/admin-user-elevation.md): You can elevate applications with on-demand account or temporarily promote the user account. - [Elevation events](https://docs.idemeum.com/epm/elevation-events.md): Idemeum captures every UAC / elevation event on your workstation and uploads each event metadata to the cloud. - [Elevation requests](https://docs.idemeum.com/epm/elevation-requests.md): Users can submit requests for application elevations. - [Elevation rules](https://docs.idemeum.com/epm/elevation-rules.md): With elevation rules you can define what can auto elevate on your workstation - [Enable EPM](https://docs.idemeum.com/epm/enable-endpoint-privilege-management.md): Enable Endpoint Privilege Management (EPM) for your organization. - [EPM overview](https://docs.idemeum.com/epm/endpoint-privilege-management-overview.md): Manage local admin rights and automate elevation requests. - [EPM control mode](https://docs.idemeum.com/epm/epm-control-mode.md): Configure how idemeum is enforcing elevation rules on your workstations. - [Reason for elevation](https://docs.idemeum.com/epm/reason-for-elevation.md): Users provide context on why they need to elevate an application. - [Technician mode](https://docs.idemeum.com/epm/technician-mode.md): IT admins bypass rules to perform administrative work on the workstation. - [User elevation notifications](https://docs.idemeum.com/epm/user-elevation-notifications.md): How users are notified when elevation requests are approved or denied. - [Guide - JIT for computers](https://docs.idemeum.com/guides/guide-jit-for-computers.md): Set up JIT admin access for computers. - [Guide - JIT for Entra ID](https://docs.idemeum.com/guides/guide-jit-for-entra-id.md): Set up JIT admin access to customer Entra ID tenants - [Guide - LAPS for computers](https://docs.idemeum.com/guides/guide-laps-for-computers.md): Set up break-glass account management for your customer tenant workstations. - [Guide - LAPS for Entra ID](https://docs.idemeum.com/guides/guide-laps-for-entra-id.md): Set up break-glass account management for your customer Entra ID tenants. - [Quickstart guides](https://docs.idemeum.com/guides/quickstart-guides.md): Follow the quickstart guides to explore idemeum platform. - [Welcome to idemeum](https://docs.idemeum.com/index.md): Meet AI-Powered Application Control platform for Windows and macOS. AI agents investigate what is launched on your endpoints, you control what is allowed to run. - [Integrations](https://docs.idemeum.com/integrations.md): Explore idemeum integrations with other products. - [Atera RMM](https://docs.idemeum.com/integrations/atera-rmm.md): Unified idemeum agent deployment with Atera. - [ConnectWise PSA](https://docs.idemeum.com/integrations/connect-wise-psa.md): Ticketing integration with ConnectWise PSA. - [HaloPSA](https://docs.idemeum.com/integrations/halo-psa.md): Integrate idemeum with HaloPSA to create tickets for elevation requests, requests JIT accounts, and more. - [Hudu](https://docs.idemeum.com/integrations/hudu.md): Hudu LAPS integration for break-glass account management. - [Immy bot](https://docs.idemeum.com/integrations/immy-bot.md): Unified idemeum agent deployment with Immy.bot. - [Level RMM](https://docs.idemeum.com/integrations/level-rmm.md): Unified idemeum agent deployment with Level RMM. - [Microsoft Intune](https://docs.idemeum.com/integrations/microsoft-intune.md): Deploy idemeum desktop agent to a fleet of Windows or macOS workstations with Microsoft Intune. - [Ninja One](https://docs.idemeum.com/integrations/ninja-one.md): Unified idemeum agent deployment with NinjaOne RMM. - [SuperOps RMM](https://docs.idemeum.com/integrations/super-ops-rmm.md): Unified idemeum agent deployment with SuperOps RMM. - [Syncro RMM](https://docs.idemeum.com/integrations/syncro-rmm.md): Unified idemeum agent deployment with Syncro RMM. - [Browser extension](https://docs.idemeum.com/jit-entra/browser-extension.md): Autofill Entra JIT credentials with idemeum Chrome extension. - [Configure JIT for Entra](https://docs.idemeum.com/jit-entra/configure-jit-for-entra.md): Connect Entra ID tenant to idemeum for JIT account management. - [Entra access auditing](https://docs.idemeum.com/jit-entra/entra-access-auditing.md): JIT for Entra ID is audited in idemeum audit trail. - [Entra JIT login flow](https://docs.idemeum.com/jit-entra/entra-jit-login-flow.md): How to request and login with Entra JIT account. - [JIT for Entra overview](https://docs.idemeum.com/jit-entra/jit-for-entra-overview.md): Eliminate shared credentials when accessing customer Entra ID tenants. - [Auto account removal](https://docs.idemeum.com/jit-for-computers/auto-account-removal.md): Domain controller agent will remove any JIT domain account that has not been used for 30 days. - [Co-managed JIT login](https://docs.idemeum.com/jit-for-computers/co-managed-jit-login.md): Onboard admins of your customers so that they can perform JIT logins, access credentials, and approve elevation requests. - [Computer access control](https://docs.idemeum.com/jit-for-computers/computer-access-control.md): Control who has access to what computers with JIT accounts. - [Computer account types](https://docs.idemeum.com/jit-for-computers/computer-account-types.md): Choose the account types to use when technicians access customer workstations. - [Configure JIT for computers](https://docs.idemeum.com/jit-for-computers/configure-jit-for-computers.md): Configure how you want JIT computer access to work. - [JIT access auditing](https://docs.idemeum.com/jit-for-computers/jit-access-auditing.md): JIT for computers is audited in idemeum audit trail. - [JIT computer elevation](https://docs.idemeum.com/jit-for-computers/jit-computer-elevation.md): Elevate by scanning a QR-code when logged in as technician. - [JIT computer login methods](https://docs.idemeum.com/jit-for-computers/jit-computer-login-methods.md): Multiple ways you can login to computers with idemeum JIT accounts. - [JIT for computers overview](https://docs.idemeum.com/jit-for-computers/jit-for-computers-overview.md): Eliminate shared credentials when accessing customer workstations and servers. - [Offline computer access](https://docs.idemeum.com/jit-for-computers/offline-computer-access.md): Access offline computers with JIT accounts. - [RDP with JIT accounts](https://docs.idemeum.com/jit-for-computers/rdp-with-jit-accounts.md): RDP with JIT accounts between domain-joined workstations. - [Selective JIT login](https://docs.idemeum.com/jit-for-computers/selective-jit-login.md): Choose what account type to use when accessing computer with JIT account. - [Bulk tenant creation](https://docs.idemeum.com/multi-tenant-portal/bulk-tenant-creation.md): Create multiple tenants / organizations using CSV upload or API. - [Delegate access to tenants](https://docs.idemeum.com/multi-tenant-portal/delegate-access-to-tenants.md): Delegate admin access to organizations / customer tenants. - [Multi-tenant portal overview](https://docs.idemeum.com/multi-tenant-portal/multi-tenant-portal-overview.md): Create tenants to manage multiple organizations / customers from one portal. - [User and admin portal](https://docs.idemeum.com/multi-tenant-portal/user-and-admin-portal.md): Idemeum offers two portals: admin portal is used to manage the tenant settings, user portal is used to quickly access resources, LAPS passwords, JIT credentials and more. - [PAM for MSPs overview](https://docs.idemeum.com/pam-for-msps-overview.md): Unified Privileged Access Management (PAM) for MSPs to eliminate shared credentials, meet compliance, and access client resources securely. - [Privacy policy](https://docs.idemeum.com/privacy-policy.md): Idemeum privacy policy document. - [Security overview](https://docs.idemeum.com/security/security-overview.md): Security is the fundamental block of our platform. - [Support](https://docs.idemeum.com/support.md): Contact idemeum support by sending us an email or opening a ticket. - [Terms of service](https://docs.idemeum.com/terms-of-service.md): Idemeum terms of service document. - [Mobile app recovery](https://docs.idemeum.com/user-management/mobile-app-recovery.md): When you reinstall idemeum app, you need to follow recovery process. - [User onboarding](https://docs.idemeum.com/user-management/user-onboarding.md): Add new admin user to idemeum portal. ## OpenAPI Specs - [openapi](https://docs.idemeum.com/api-reference/openapi.json) ## Optional - [idemeum.com](https://idemeum.com) - [Blog](https://idemeum.com/blog) - [API](https://api.idemeum.com)