Integrations
Tagaris is a register. Its integrations either feed it or link out from it, and none of them is an agent.
How integrations fit
The register is the product. Everything else connects to it in one of two directions. Inbound, device sync pulls managed devices from your MDM so the register does not depend on typing, the Entra import pulls people from your directory, and single sign-on hands the login to your identity provider. Outbound, Jira takes tickets to your service desk and reads their status back, the REST API lets your own tools read and write records, and email, webhooks and the calendar feed carry alerts to where people already look.
Nothing runs on the devices themselves. There is no Tagaris agent to deploy and nothing to keep patched on endpoints. The inbound connectors are read-only against their source: Tagaris never writes to Intune, Jamf Pro or Entra ID. Each integration is configured in Settings by an administrator (single sign-on by the install owner), tested from the same screen with a real call, and switched off from the same place.
What connects
Four have their own page. The rest are covered in the documentation.
Microsoft Intune
Free beta. Pulls managed devices from Intune into a review queue, matched to your assets by serial number, then hostname. Link, import or ignore each one. Read-only.
Jamf Pro
Free beta. The same review queue for the Macs, iPhones and iPads managed in Jamf Pro, with CPU, RAM and storage read from the inventory.
Microsoft Entra ID
Team for single sign-on over OpenID Connect, with roles mapped from your directory. Free beta for the people import, which pulls enabled users into the register, matched by email.
Jira Cloud
Team. Raise a ticket from an asset page with the details filled in, link tickets by issue key, and see the cached status on the asset. Tagaris creates issues and reads status; it never changes a ticket.
REST API
Team. A versioned API for assets, people and locations, with personal and organisation keys, read and write scopes, a rate limit and an install-wide off switch.
Free. The daily digest, invites and password resets go out over SMTP, Microsoft 365 with OAuth through Graph, or Google Workspace through the Gmail API. A test button reports the exact error if sending fails.
Slack, Microsoft Teams and calendar
Free. Post the daily digest's findings to a Slack or Teams incoming webhook, and subscribe Outlook or Google Calendar to a feed of upcoming renewal dates.
Any service desk, by URL
Free, no setup. Paste a ticket's URL from Halo, ServiceNow, Zendesk or anything else onto an asset's Tickets card, with an optional label. The link opens the ticket in the other system.
Which tier includes what
Assets are unlimited on every tier. The integrations split three ways.
Free
- Email over SMTP, Microsoft 365 or Google Workspace
- Slack and Microsoft Teams webhooks
- Calendar feed of renewal dates
- Ticket links by URL from any service desk
- CSV import with Snipe-IT and Halo presets
Team
- Microsoft Entra ID single sign-on
- Jira Cloud ticketing
- REST API with personal and organisation keys
Free beta
- Microsoft Intune device sync
- Jamf Pro device sync
- Microsoft Entra ID people import
Beta features need a free key from [email protected]. It is applied like any other key and can sit alongside a Team licence. Plans are on the pricing page; the free tier is described on the free tier page.
Where each one is set up
Settings, Integrations
The Intune, Jamf Pro and Jira cards live here, for organisation administrators. Each has a Test connection button that signs in and makes a real read, so a green result means the permission is consented and the pull will work.
Each card also takes an optional credential expiry date. The daily digest then warns 30, 7 and 1 days before the secret or token lapses.
Settings, Email and Alerts
The Email tab holds the transport and its test button. The Alerts tab holds the digest thresholds, the Slack and Teams webhooks, the calendar feed and, with Jira connected, the option to raise a ticket from each digest.
Settings, Application, Single sign-on
Single sign-on belongs to the whole install, so it is configured by the install owner rather than an organisation administrator. The same split covers the licence and API kill switch, and is enforced on the server.
People, Import
The Entra people import sits with the CSV importer, and runs through the same preview before anything is written. API keys are created in My account (personal) or Settings (organisation).
Common questions
Does Tagaris install anything on the devices?
No. There is no Tagaris agent. Device details come from Microsoft Intune or Jamf Pro, which already manage the device, and Tagaris reads them through those products' APIs on a schedule.
Can an integration change data in Intune, Jamf, Entra ID or Jira?
The device sync and the people import are read-only: Tagaris never writes to Intune, Jamf Pro or Entra ID. The Jira integration creates issues and reads their summary and status. It never transitions, comments on, edits or deletes a ticket.
Do I need a paid licence for device sync?
No. Device sync from Intune and Jamf Pro, and the Entra ID people import, are a free beta. Request a beta key from [email protected]. It is applied like any other key and can sit alongside a Team licence.
Can I feed Tagaris from a system that has no connector?
Yes. The CSV importer (free) takes a header row and a column mapping, with presets for Snipe-IT and Halo exports. The REST API (Team) reads and writes assets, people and locations for your own scripts.
See the register the integrations feed
The live demo runs the current release in your browser, with the Integrations, Alerts and Tickets screens in place.