Integrations

Tagaris is a register. Its integrations either feed it or link out from it, and none of them is an agent.

How integrations fit

The register is the product. Everything else connects to it in one of two directions. Inbound, device sync pulls managed devices from your MDM so the register does not depend on typing, the Entra import pulls people from your directory, and single sign-on hands the login to your identity provider. Outbound, Jira takes tickets to your service desk and reads their status back, the REST API lets your own tools read and write records, and email, webhooks and the calendar feed carry alerts to where people already look.

Nothing runs on the devices themselves. There is no Tagaris agent to deploy and nothing to keep patched on endpoints. The inbound connectors are read-only against their source: Tagaris never writes to Intune, Jamf Pro or Entra ID. Each integration is configured in Settings by an administrator (single sign-on by the install owner), tested from the same screen with a real call, and switched off from the same place.

What connects

Four have their own page. The rest are covered in the documentation.

Microsoft Intune

Free beta. Pulls managed devices from Intune into a review queue, matched to your assets by serial number, then hostname. Link, import or ignore each one. Read-only.

Intune integration

Jamf Pro

Free beta. The same review queue for the Macs, iPhones and iPads managed in Jamf Pro, with CPU, RAM and storage read from the inventory.

Jamf Pro integration

Microsoft Entra ID

Team for single sign-on over OpenID Connect, with roles mapped from your directory. Free beta for the people import, which pulls enabled users into the register, matched by email.

Entra ID integration

Jira Cloud

Team. Raise a ticket from an asset page with the details filled in, link tickets by issue key, and see the cached status on the asset. Tagaris creates issues and reads status; it never changes a ticket.

Jira integration

REST API

Team. A versioned API for assets, people and locations, with personal and organisation keys, read and write scopes, a rate limit and an install-wide off switch.

API documentation

Email

Free. The daily digest, invites and password resets go out over SMTP, Microsoft 365 with OAuth through Graph, or Google Workspace through the Gmail API. A test button reports the exact error if sending fails.

Email documentation

Slack, Microsoft Teams and calendar

Free. Post the daily digest's findings to a Slack or Teams incoming webhook, and subscribe Outlook or Google Calendar to a feed of upcoming renewal dates.

Reports and alerts documentation

Any service desk, by URL

Free, no setup. Paste a ticket's URL from Halo, ServiceNow, Zendesk or anything else onto an asset's Tickets card, with an optional label. The link opens the ticket in the other system.

Linking tickets by URL

Which tier includes what

Assets are unlimited on every tier. The integrations split three ways.

Free

  • Email over SMTP, Microsoft 365 or Google Workspace
  • Slack and Microsoft Teams webhooks
  • Calendar feed of renewal dates
  • Ticket links by URL from any service desk
  • CSV import with Snipe-IT and Halo presets

Team

  • Microsoft Entra ID single sign-on
  • Jira Cloud ticketing
  • REST API with personal and organisation keys

Free beta

  • Microsoft Intune device sync
  • Jamf Pro device sync
  • Microsoft Entra ID people import

Beta features need a free key from [email protected]. It is applied like any other key and can sit alongside a Team licence. Plans are on the pricing page; the free tier is described on the free tier page.

Where each one is set up

Settings, Integrations

The Intune, Jamf Pro and Jira cards live here, for organisation administrators. Each has a Test connection button that signs in and makes a real read, so a green result means the permission is consented and the pull will work.

Each card also takes an optional credential expiry date. The daily digest then warns 30, 7 and 1 days before the secret or token lapses.

Settings, Email and Alerts

The Email tab holds the transport and its test button. The Alerts tab holds the digest thresholds, the Slack and Teams webhooks, the calendar feed and, with Jira connected, the option to raise a ticket from each digest.

Settings, Application, Single sign-on

Single sign-on belongs to the whole install, so it is configured by the install owner rather than an organisation administrator. The same split covers the licence and API kill switch, and is enforced on the server.

People, Import

The Entra people import sits with the CSV importer, and runs through the same preview before anything is written. API keys are created in My account (personal) or Settings (organisation).

Common questions

Does Tagaris install anything on the devices?

No. There is no Tagaris agent. Device details come from Microsoft Intune or Jamf Pro, which already manage the device, and Tagaris reads them through those products' APIs on a schedule.

Can an integration change data in Intune, Jamf, Entra ID or Jira?

The device sync and the people import are read-only: Tagaris never writes to Intune, Jamf Pro or Entra ID. The Jira integration creates issues and reads their summary and status. It never transitions, comments on, edits or deletes a ticket.

Do I need a paid licence for device sync?

No. Device sync from Intune and Jamf Pro, and the Entra ID people import, are a free beta. Request a beta key from [email protected]. It is applied like any other key and can sit alongside a Team licence.

Can I feed Tagaris from a system that has no connector?

Yes. The CSV importer (free) takes a header row and a column mapping, with presets for Snipe-IT and Halo exports. The REST API (Team) reads and writes assets, people and locations for your own scripts.

See the register the integrations feed

The live demo runs the current release in your browser, with the Integrations, Alerts and Tickets screens in place.

Or try Team free for 30 days, no payment details.