# ManageEngine MDM MCP connector

The ManageEngine MDM connector lets Claude, ChatGPT, Cursor, or any MCP client look up managed devices, check encryption and profiles, assign apps, and request locations, all inside each person's own ManageEngine MDM access with every action logged.

Source: https://elaichi.ai/connectors/manageenginemdm/

## Facts

| | |
| --- | --- |
| Application | ManageEngine MDM |
| Category | Device Management |
| AI tools | 157 |
| Authentication | Connects over OAuth |
| Needs your own OAuth app | Yes |
| MCP endpoint | https://api.elaichi.ai/mcp |
| Works with | Claude, ChatGPT, Cursor, any MCP client, and the Elaichi Agent |
| Tools advertised by name | No. 157 tools is past the 30-tool threshold, so clients use `search_tools` and `execute_tool` |

## What you can ask once ManageEngine MDM is connected

- Which devices are missing FileVault right now?
- Show the profiles installed on our finance laptops.
- List devices with certificates expiring in 30 days.

## Connect ManageEngine MDM in Elaichi

This happens once for the organization, before any client is involved.

1. Open Connections, choose Add connection, and pick ManageEngine MDM.
2. Optionally set Share with, then press Connect.
3. Supply your own ManageEngine MDM app, then approve. ManageEngine MDM needs an OAuth app you register yourself, so bring its client ID and secret. One person does this once for the organization.

Credentials are vaulted and nobody, including the AI, reads them back. The connection becomes a toolbox immediately, so you can curate which ManageEngine MDM tools are exposed, rename them, or freeze arguments before anyone points a client at it.

## Connect ManageEngine MDM to Claude

Endpoint: https://api.elaichi.ai/mcp

1. Open Customize, then Connectors.
2. Press Add.
3. Name it, paste the MCP server URL, then Continue.
4. Sign in and approve.

On Team and Enterprise, an Owner adds it once. Everyone else turns it on for themselves.

## Connect ManageEngine MDM to ChatGPT

Endpoint: https://api.elaichi.ai/mcp

1. Open Plugins, then press the + button.
2. Name it and paste the endpoint into Server URL.
3. Leave Authentication on OAuth, then tick the risk acknowledgement.
4. Press Create, then sign in and approve.

Works on the web today. The plugin directory lives at chatgpt.com/plugins.

## Connect ManageEngine MDM to Cursor

Endpoint: https://api.elaichi.ai/mcp

1. Open `~/.cursor/mcp.json`.
2. Add the endpoint under `mcpServers`.
3. Reload Cursor, then sign in and approve.

Set up per machine, so repeat it on each computer you work from.

## Connect ManageEngine MDM to any MCP client

Endpoint: https://api.elaichi.ai/mcp

1. Add the endpoint as a remote MCP server.
2. Sign in and approve.

The Elaichi Agent already has these tools, with nothing to set up.

## What the consent screen decides

Only Read is granted by default, which is not enough to call a ManageEngine MDM tool. Over MCP there is no trusted place to confirm a write in the moment, so the consent screen is the standing approval rather than a formality. Grant Read and Run tools. Think hard before granting Delete, which reaches into connected apps and cannot be undone.

## What teams do with ManageEngine MDM through Elaichi

### Pull up a device before you touch it

IT. Ask for a laptop by name or serial and get its summary, installed apps, assigned profiles, and last check-in time in one answer, without clicking through ManageEngine MDM tabs.

### Push a profile while the caller waits

Helpdesk. When someone cannot join the office Wi-Fi or set up mail, assign the right configuration profile to their device during the call and confirm it landed.

### Confirm a Mac is encrypted before sign-off

Security. Check FileVault status, firmware password, and installed certificates on a device before it ships to a new hire or leaves the building.

### Find a phone that did not come back

Operations. Request a fresh location for a missing tablet or handset and get it back with a street address, not just coordinates.

### List devices missing a required restriction

Compliance. Walk the device list and pull each one's restriction settings to see which phones still allow camera use or app installs outside policy.

### Remove an app from a group of devices

IT. Unassign a retired app from every device that still has it, refresh the app status, and check that nothing is left behind.

## Frequently asked questions

### How do I connect ManageEngine MDM to Claude?

Connect ManageEngine MDM in Elaichi, then in Claude go to Customize, then Connectors, then Add, and paste https://api.elaichi.ai/mcp. ManageEngine MDM requires an OAuth application registered inside your own ManageEngine MDM console, so one administrator brings a client ID and secret into Elaichi once. After that, each person just signs in to ManageEngine MDM with their own account when Claude asks, and nobody else ever handles those credentials.

### Does ManageEngine MDM work with ChatGPT and Cursor as well as Claude?

Yes. Once ManageEngine MDM is connected in Elaichi, the same endpoint, https://api.elaichi.ai/mcp, works in Claude, ChatGPT, Cursor, any other MCP client, and the Elaichi Agent. You connect ManageEngine MDM once and every client your team uses picks it up.

### What can an AI agent actually do with my ManageEngine MDM data?

With ManageEngine MDM connected, an agent can look up a managed device and report its summary, installed apps, assigned profiles, certificates, FileVault and firmware status, restrictions, and last check-in. It can assign or remove configuration profiles and apps, refresh app status, update device details, and request a current location with an address. ManageEngine MDM has a lot of capabilities, so short concrete asks, like "show restrictions on Priya's iPad", work better than long paragraphs.

### Does connecting ManageEngine MDM give the AI access to every device and every action?

No. Every request runs as the person who signed in to ManageEngine MDM, so an agent can only see the devices and take the actions that person's ManageEngine MDM role already allows. Elaichi can narrow that further by team or by action, and it never grants anything the person could not do themselves in ManageEngine MDM.

### Can my team share one ManageEngine MDM connection?

Yes. One administrator connects ManageEngine MDM in Elaichi and shares it with a team, so nobody else needs to see the client ID, secret, or any other credential. Each teammate still signs in to ManageEngine MDM as themselves, so the audit log records exactly who looked up a device or pushed a profile.

### Can I stop an agent from changing devices or removing apps in ManageEngine MDM?

Yes. Restrictions in Elaichi apply per action, so you can allow reading device summaries and locations while blocking profile changes, app removal, or device updates in ManageEngine MDM. A blocked action is never shown to Claude, ChatGPT, or any other client at all, so no prompt, however worded, can reach it.

### What happens to a ManageEngine MDM connection when someone leaves?

Offboarding a person in Elaichi ends their access to ManageEngine MDM through every client at once. If they connected a shared ManageEngine MDM connection, it keeps working for everyone else on the team. Disconnecting ManageEngine MDM once in Elaichi removes it from Claude, ChatGPT, Cursor, and every other client in one step.

## All 157 ManageEngine MDM tools

Every tool below is callable through https://api.elaichi.ai/mcp once ManageEngine MDM is connected, subject to the toolbox it is in and the restrictions on the caller.

- **List all ManageEngine MDM devices** (List). List managed devices in ManageEngine MDM. Returns: device_id, os_version, is_lost_mode_enabled, owned_by, is_removed, product_name, device_name, platform_type, platform_type_id, udid, serial_number, model, user, imei, summary. Optional filters include search, group_id, platform, device_type, owned_by, email, imei, and serial_number.
- **Get single ManageEngine MDM device by ID** (Get). Get detailed information about a specific managed device in ManageEngine MDM by id. Returns the full device object including model, serial_number, os, security, battery_level, network_usage, sims, knox_details, and summary. The optional summary query parameter includes profile/app/doc/group counts. Required: id.
- **Update a ManageEngine MDM device by ID** (Update). Update device details such as name, asset tag, warranty, and purchase information in ManageEngine MDM by id. Returns the updated device object including model, serial_number, os, security, and summary. To revert fields to defaults, provide empty string and -1. Required: id.
- **ManageEngine MDM devices get summary** (Get). Get a summary of a managed device in ManageEngine MDM. Returns: agent_version, device_name, doc_count, device_id, group_count, platform_type, last_contact_time, profile_count, app_count, group. Required: device_id.
- **ManageEngine MDM devices get certificates** (Get). Get certificates installed on a managed device in ManageEngine MDM. Returns the certificates object containing managedcertificates and unmanagedcertificates arrays, each with certificatename, certificatesubjectname, certificateissuername, certificateexpiry, serialnumber, isidentity, signaturealgorithmoid, and signaturealgorithmname. Required: device_id.
- **ManageEngine MDM devices get restrictions** (Get). Get device restrictions applied to a managed device in ManageEngine MDM. Returns: allow_inapp_purchase, developer_unlock, allow_app_removal, allow_news, show_notification_center, allow_radio_service, allow_profile_installation, request_to_leave_classroom, allow_managed_book_sync, allow_bluetooth_modification, allow_use_of_ibookstore, allow_open_doc_in_managed, allow_diagnostic_submission,…
- **ManageEngine MDM devices get filevault** (Get). Get FileVault encryption details for a managed Mac device in ManageEngine MDM. Returns the filevault object including filevault_status, is_encryption_enabled, is_institution_recovery_key, is_personal_recovery_key, and resource_id. Required: device_id.
- **ManageEngine MDM devices get firmware** (Get). Get firmware details for a managed Mac machine in ManageEngine MDM. Returns: is_firmware_change_pending, is_roms_allowed, is_firmware_password_exists, firmware_mode, managed_password_id. Required: device_id.
- **ManageEngine MDM devices get firmware password** (Get). Get the firmware password of a managed Mac machine in ManageEngine MDM. Returns: firmware_password, resource_id. Required: device_id.
- **ManageEngine MDM devices get locations all** (Get). Get the location details of all managed devices in ManageEngine MDM. Returns the deviceLocationMap containing per-device arrays of location records with added_time, latitude, longitude, and located_time.
- **ManageEngine MDM devices get location** (Get). Get the location history of a managed device in ManageEngine MDM. Returns: locations. Required: device_id.
- **ManageEngine MDM devices get location with address** (Get). Get device location history with resolved addresses from a prior location request in ManageEngine MDM. Returns: locations. Required: device_id.
- **ManageEngine MDM devices request location** (Action). Request device location with address details in ManageEngine MDM. By default, the last 3 days of location data is provided in the professional edition and the last known location in the standard edition. Returns: export_batch_id, wait, status. Required: device_id.
- **ManageEngine MDM devices list profiles** (List). List the profiles installed on a ManageEngine MDM device. Returns: profile_id, profile_name, profile_description, status, platform_type, latest_version, executed_version, associated_by_user_name, associated_by_user_id, associated_on, applied_time, created_time, created_user, last_modified_time, last_modified_user, remark, localized_remarks. Required: device_id.
- **ManageEngine MDM devices associate profiles** (Action). Associate one or more MDM profiles to a device in ManageEngine MDM. Returns an empty 204 response on success. Required: device_id, profile_ids.
- **ManageEngine MDM devices disassociate profiles** (Action). Disassociate one or more profiles from a device in ManageEngine MDM. Returns an empty 204 response on success. Required: device_id.
- **ManageEngine MDM devices get profile details** (Get). Get details of a specific profile associated to a device in ManageEngine MDM. Returns: created_time, last_modified_user, last_modified_time, created_user, associated_by_user_name, remark, applied_time, profile_description, associated_by_user_id, localized_remarks, profile_name, platform_type, latest_version, executed_version, profile_id, associated_on, status. Required: device_id, profile_id.
- **ManageEngine MDM devices get configuration profiles** (Get). List all installed configuration profiles on a device in ManageEngine MDM, including both user-installed and MDM-installed profiles. Returns: payload_uuid, payload_identifier, payload_description, payload_organization, payload_type, payload_version, payload_has_rem_password, payload_is_encrypted, payload_display_name, payload_unremovable, payloadcontent. Required: device_id.
- **ManageEngine MDM devices list apps** (List). List the apps installed on a ManageEngine MDM device. Returns: app_id, app_name, app_type, app_category_name, is_paid_app, platform_type, latest_version, executed_version, islatestver, associated_by, associated_on, remarks, localized_remark, status, release_label_details. Required: device_id.
- **ManageEngine MDM devices associate apps** (Action). Associate one or more apps to a specific device in ManageEngine MDM. Returns a status response confirming the app-to-device association. Required: device_id.
- **ManageEngine MDM devices disassociate apps** (Action). Dissociate apps from a device in ManageEngine MDM. Returns an empty 204 response on success. Required: device_id.
- **ManageEngine MDM devices get app details** (Get). Get details of a specific app distributed to a device in ManageEngine MDM. Returns the app object including app_id, app_name, status, platform_type, associated_by, associated_on, release_label_details, latest_version, and remarks. Required: device_id, app_id.
- **ManageEngine MDM devices refresh app status** (Refresh). Refresh the app installation status for a device in ManageEngine MDM. Returns an empty 204 response on success. Required: device_id.
- **ManageEngine MDM devices get polltime** (Get). Get the next poll time for a ManageEngine MDM device. Returns: next_poll_time. Required: device_id.
- **ManageEngine MDM devices get applicable actions** (Get). Get applicable remote actions for a ManageEngine MDM device. Returns: knox_actions, actions. Required: device_id.
- **ManageEngine MDM devices perform action** (Action). Perform an action on a ManageEngine MDM device such as scan, lock, remote control, complete wipe, or enable lost mode. Returns an empty 202 Accepted response on success. Required: device_id, action_name.
- **ManageEngine MDM devices get scan status** (Get). Get the last scan status for a ManageEngine MDM device. Returns: status_description, status_code, kb_url. Required: device_id.
- **ManageEngine MDM devices get privacy** (Get). Get privacy settings for a ManageEngine MDM device. Returns: fetch_location, view_privacy_settings, disable_wipe, fetch_device_name, fetch_installed_app, disable_bug_report, applicable_for, disable_remote_control, fetch_phone_number. Required: device_id.
- **ManageEngine MDM devices execute bulk command** (Execute). Execute a bulk device command in ManageEngine MDM by command name. The response payload is command-specific and cannot be enumerated from the available source documentation. Required: command_name.
- **ManageEngine MDM devices get command history** (Get). Get command history for a specific device in ManageEngine MDM. Returns: command_status, managed_status, command_id, command_name, added_time, device_id, added_by, command_history_id, added_by_name, command_life, remarks_args, remarks. Required: device_id.
- **ManageEngine MDM devices get recent command** (Get). Get the last initiated command status for a ManageEngine MDM device. Returns: status_description, status_code, command_name, kb_url. Required: device_id.
- **ManageEngine MDM devices apply knox action** (Action). Apply a Knox action to a ManageEngine MDM device. Returns: status_description, status_code, command_name, kb_url. Required: device_id, action_name.
- **ManageEngine MDM devices remove action** (Delete). Remove a pending action from a ManageEngine MDM device if it has not yet been performed. Returns an empty 204 response on success. Required: device_id, action_name.
- **List all ManageEngine MDM groups** (List). List Manage Engine MDM groups available in MDM. Returns: group_id, name, group_type, domain, description.
- **Create a ManageEngine MDM group** (Create). Create a Manage Engine MDM group for managing devices. Returns: group_id, name, group_type, domain, description. Required: name, group_type.
- **Get single ManageEngine MDM group by ID** (Get). Get details of a specific Manage Engine MDM group by id. Returns: group_id, name, group_type, domain, description. Required: id.
- **Delete a ManageEngine MDM group by ID** (Delete). Delete a Manage Engine MDM group by id. Returns an empty 204 response on success. Required: id.
- **ManageEngine MDM groups list members** (List). List members present in a ManageEngine MDM group. Returns: member_ids. Required: group_id. Use the include=memberdetails query parameter to request expanded member detail in the response.
- **ManageEngine MDM groups add members** (Add). Add multiple members simultaneously to an existing ManageEngine MDM group. Returns: member_ids. Required: group_id, member_ids.
- **ManageEngine MDM groups add member** (Add). Add a particular member to a selected ManageEngine MDM group. Returns an empty 202 response on success. Required: group_id, member_id.
- **ManageEngine MDM groups remove member** (Delete). Remove a member from a particular ManageEngine MDM group. Returns an empty 204 response on success. Required: group_id, member_id.
- **ManageEngine MDM groups associate apps** (Action). Associate one or more apps to a ManageEngine MDM group by providing a list of app IDs. Returns an empty response on success. Required: group_id, app_ids.
- **ManageEngine MDM groups disassociate apps** (Action). Disassociate all apps from a ManageEngine MDM group. Returns an empty 204 response on success. Required: group_id.
- **ManageEngine MDM groups associate profiles** (Action). Associate configuration profiles to a ManageEngine MDM group. Returns an empty response on success. Required: group_id, profile_ids.
- **ManageEngine MDM groups disassociate profiles** (Action). Disassociate configuration profiles from a ManageEngine MDM group. Returns an empty response on success. Required: group_id, profile_ids.
- **ManageEngine MDM groups move devices** (Move). Move a set of members from one ManageEngine MDM group to other target groups. Returns: success. Required: group_id, member_ids, target_group_ids.
- **ManageEngine MDM groups move devices to target** (Move). Move a set of members from one ManageEngine MDM group to other target groups. Returns: success. Required: group_id, member_ids, target_group_ids.
- **List all ManageEngine MDM profiles** (List). List MDM profiles in ManageEngine Mobile Device Manager Plus. Returns: creation_time, last_modified_time, profile_version, payloads, last_modified_by, profile_description, created_by, collection_id, profile_name, profile_status, platform_type, is_moved_to_trash, profile_id, scope, profile_status_id, provider_type, connection_type, ondemandrule, proxy_type, send_all_nw_traffic, proxy_server_port,…
- **Create a ManageEngine MDM profile** (Create). Create a new MDM profile in ManageEngine Mobile Device Manager Plus. Returns the created profile including profile_id, profile_name, profile_status, platform_type, and payloads. Required: profile_name, platform_type.
- **ManageEngine MDM profiles trash** (Action). Trash or permanently delete MDM profiles in ManageEngine Mobile Device Manager Plus. On first call the profile is trashed; if already trashed it is deleted permanently. Returns an empty 204 response on success. Required: profile_ids.
- **Get single ManageEngine MDM profile by ID** (Get). Get a single MDM profile by id in ManageEngine Mobile Device Manager Plus. Returns: creation_time, last_modified_time, profile_version, payloads, last_modified_by, profile_description, created_by, collection_id, profile_name, profile_status, platform_type, is_moved_to_trash, profile_id, scope, profile_status_id, provider_type, connection_type, ondemandrule, proxy_type, send_all_nw_traffic,…
- **Update a ManageEngine MDM profile by ID** (Update). Modify an existing MDM profile in ManageEngine Mobile Device Manager Plus. Returns an empty 202 response on success. Required: id.
- **ManageEngine MDM profiles list payloads** (List). List all payload types configured within a ManageEngine MDM profile. Returns: payloads, provider_type, connection_type, ondemandrule, proxy_type, send_all_nw_traffic, proxy_server_port, proxy_server, vpn_type, sub_config, config_id, ondemand_match_app_enabled, proxy_pac_url, config_type, config_name, ikev2, connection_name, enable_vpn_on_demand, proxy_user_name, certificate_uuid, proxy_password.…
- **ManageEngine MDM profiles get payload IDS** (Get). Get the payload item IDs for a specific payload type within a ManageEngine MDM profile. Returns: payload_name, payloaditems, provider_type, connection_type, ondemandrule, proxy_type, send_all_nw_traffic, proxy_server_port, proxy_server, vpn_type, sub_config, config_id, ondemand_match_app_enabled, proxy_pac_url, config_type, config_name, ikev2, connection_name, enable_vpn_on_demand,…
- **ManageEngine MDM profiles add payload** (Add). Add a payload of a specific type to a ManageEngine MDM profile. Returns the created payload configuration including payload_id, max_passcode_age, require_alphanumeric, min_passcode_length, and payload-type-specific fields. Required: profile_id, payload_name. The request body structure varies by payload type.
- **ManageEngine MDM profiles remove payload** (Delete). Remove a payload type and all its items from a ManageEngine MDM profile. Returns an empty 204 response on success. Required: profile_id, payload_name.
- **ManageEngine MDM profiles get payload details** (Get). Get detailed configuration for a specific payload item in a ManageEngine MDM profile. Returns: max_passcode_age, require_alphanumeric, max_failed_attempts, min_passcode_length, min_complex_chars, no_of_passcode_maintained, allow_simple_value, auto_lock_idle_for, max_grace_period, payload_id, provider_type, connection_type, ondemandrule, proxy_type, send_all_nw_traffic, proxy_server_port,…
- **ManageEngine MDM profiles remove payload item** (Delete). Remove a specific payload item from a ManageEngine MDM profile. Returns an empty 204 response on success. Required: profile_id, payload_name, payload_id.
- **ManageEngine MDM profiles publish** (Publish). Publish a ManageEngine MDM profile so it can be distributed to devices and groups. Every profile needs to be published before it can be distributed. Returns an empty 204 response on success. Required: profile_id.
- **ManageEngine MDM profiles update all** (Update). Update a ManageEngine MDM profile to all associated devices and groups. Returns an empty 202 response on success. Required: profile_id.
- **ManageEngine MDM profiles bulk update** (Update). Update a specific payload item within a ManageEngine MDM profile by replacing its configuration. Returns the payload configuration object with payload-type-specific fields. Required: profile_id, payload_name, payload_id. The request body structure varies by payload type — refer to the ManageEngine MDM Profile API Help page for the payload-specific JSON format of each type.
- **List all ManageEngine MDM apps** (List). List apps available in the ManageEngine MDM App Repository. Returns: app_id, app_name, app_category, app_type, bundle_identifier, version, platform_type, description, icon, store_url, is_app_paid, country_code, store_id, added_time, modified_time, release_labels.
- **Create a ManageEngine MDM app** (Create). Add a Store or enterprise app to the ManageEngine MDM server. Returns: app_id, app_name, app_category, app_type, bundle_identifier, version, platform_type, description, icon, store_url, is_app_paid, country_code, store_id, added_time, modified_time, release_labels. Required: app_name, app_type, app_file, app_category_id, supported_devices, release_label_id.
- **Get single ManageEngine MDM app by ID** (Get). Get details of a specific app version in ManageEngine MDM by app and release label. Returns: app_id, app_name, app_category, app_type, bundle_identifier, version, platform_type, description, icon, store_url, is_app_paid, country_code, store_id, added_time, modified_time, release_labels. Required: app_id, id.
- **ManageEngine MDM apps create app channel** (Create). Create a release label channel for maintaining multiple versions of enterprise apps in ManageEngine MDM. Returns: release_label_id. Required: channel_name.
- **ManageEngine MDM apps associate to devices** (Action). Associate an app to specific devices in ManageEngine MDM. Returns an empty 202 response on success. Required: app_id, release_label_id, device_ids.
- **ManageEngine MDM apps associate to groups** (Action). Associate a ManageEngine MDM app to one or more groups for a specific release label. Returns an empty 202 response on success. Required: app_id, release_label_id, group_ids.
- **Update a ManageEngine MDM app by ID** (Update). Update a ManageEngine MDM app's details or app version within a specific release label. Returns the updated app object including app_id, app_name, version, platform_type, app_type, and release_labels. Required: app_id, id.
- **ManageEngine MDM apps approve version** (Approve). Approve a specific app version within a release label in ManageEngine MDM. Returns the app object including app_id, app_name, version, platform_type, and release_labels. Required: app_id, release_label_id.
- **ManageEngine MDM apps disassociate from device** (Action). Disassociate a ManageEngine MDM app from a specific device. Returns an empty 204 response on success. Required: app_id, device_id.
- **ManageEngine MDM apps disassociate from group** (Action). Disassociate a ManageEngine MDM app from a specific group. Returns an empty 204 response on success. Required: app_id, group_id.
- **Delete a ManageEngine MDM app by ID** (Delete). Delete an existing app from the ManageEngine MDM App Repository by id. Returns an empty 204 response on success. Required: id.
- **ManageEngine MDM apps delete version** (Delete). Delete a specific version of an app from the ManageEngine MDM App Repository. Approved app versions cannot be deleted. Returns an empty 204 response on success. Required: app_id, release_label_id.
- **List all ManageEngine MDM blacklist apps** (List). List apps available for blocklisting in the ManageEngine MDM inventory. Returns: identifier, appgroupid, platform, appname.
- **ManageEngine MDM blacklist apps add** (Add). Add a new app to the blocklist repository in ManageEngine MDM. Returns: identifier, appgroupid, platform, appname. Required: apps.
- **ManageEngine MDM blacklist apps blocklist devices** (Action). Blocklist apps on managed devices in ManageEngine MDM. Returns: resource_ids. Required: resource_ids, app_group_ids.
- **ManageEngine MDM blacklist apps remove from devices** (Delete). Remove blocklisted apps from managed devices in ManageEngine MDM. Returns: resource_ids. Required: resource_ids, app_group_ids.
- **ManageEngine MDM blacklist apps blocklist groups** (Action). Blocklist apps from device groups in ManageEngine MDM. Returns: resource_ids. Required: resource_ids, app_group_ids.
- **ManageEngine MDM blacklist apps remove from groups** (Delete). Remove blocklisted apps from groups in ManageEngine MDM. Returns: resource_ids. Required: resource_ids, app_group_ids.
- **ManageEngine MDM blacklist apps get status** (Get). Get the blocklist status of apps on devices managed by ManageEngine MDM. Returns the Blackliststatus array with each entry containing status, resourceId, identifier, and appname.
- **List all ManageEngine MDM content** (List). List content (documents and media) available on the ManageEngine MDM server. Returns: doc_id, doc_name, added_time, updated_time, last_modified_by_name, last_modified_by, created_by_name, created_by, size, doc_type, repository_type, description.
- **Create a ManageEngine MDM content** (Create). Add a document or media file to the ManageEngine MDM server. Returns: doc_id, doc_name, added_time, updated_time, last_modified_by_name, last_modified_by, created_by_name, created_by, size, doc_type, repository_type, description. Required: tags, description, file_id.
- **Get single ManageEngine MDM content by ID** (Get). Get details of a specific document or media file in ManageEngine MDM by id. Returns: doc_id, doc_name, added_time, updated_time, last_modified_by_name, last_modified_by, created_by_name, created_by, size, doc_type, repository_type, description. Required: id.
- **Update a ManageEngine MDM content by ID** (Update). Update content on the ManageEngine MDM server by id. Returns: doc_id, doc_name, added_time, updated_time, last_modified_by_name, last_modified_by, created_by_name, created_by, size, doc_type, repository_type, description. Required: id, tags, description, file_id.
- **Delete a ManageEngine MDM content by ID** (Delete). Delete a document or media file from the ManageEngine MDM server by id. Returns an empty 204 response on success. Required: id.
- **ManageEngine MDM content associate to devices** (Action). Associate ManageEngine MDM content to one or more devices by device ID. Returns an empty 204 response on success. Required: doc_id, devices.
- **ManageEngine MDM content disassociate from devices** (Action). Disassociate ManageEngine MDM content from one or more devices by device ID. Returns an empty 204 response on success. Required: doc_id, devices.
- **ManageEngine MDM content associate to groups** (Action). Associate ManageEngine MDM content to one or more groups by group ID. Returns an empty 204 response on success. Required: doc_id, groups.
- **ManageEngine MDM content disassociate from groups** (Action). Disassociate ManageEngine MDM content from one or more groups by group ID. Returns an empty 204 response on success. Required: doc_id, groups.
- **ManageEngine MDM content associate to users** (Action). Associate ManageEngine MDM content to one or more users by user ID. Returns an empty 204 response on success. Required: doc_id, users.
- **ManageEngine MDM content disassociate from users** (Action). Disassociate content (document or media) from a list of users in ManageEngine MDM. Returns an empty 204 response on success. Required: doc_id.
- **List all ManageEngine MDM announcements** (List). List all announcements in ManageEngine MDM. Returns: announcement_name, announcement_format, creation_time, created_by_user, last_modified_time, collection_id, profile_id, last_modified_by_user, ack_button, announcement_id, is_moved_to_trash, needs_acknowledgement, announcement_detail, no_of_devices_distributed, no_of_groups_distributed.
- **Create a ManageEngine MDM announcement** (Create). Create a new announcement in ManageEngine MDM. Returns an empty 204 response on success. Required: announcement_name, announcement_format, announcement_detail.
- **ManageEngine MDM announcements delete bulk** (Delete). Delete one or more announcements in ManageEngine MDM. Returns an empty 204 response on success.
- **Get single ManageEngine MDM announcement by ID** (Get). Get details of a specific announcement in ManageEngine MDM by id. Returns: announcement_name, announcement_format, creation_time, created_by_user, last_modified_time, collection_id, profile_id, last_modified_by_user, ack_button, announcement_id, is_moved_to_trash, needs_acknowledgement, announcement_detail, no_of_devices_distributed, no_of_groups_distributed. Required: id.
- **Update a ManageEngine MDM announcement by ID** (Update). Modify an existing announcement in ManageEngine MDM by id. Returns an empty 204 response on success. Required: id, announcement_name, announcement_format, announcement_detail.
- **Delete a ManageEngine MDM announcement by ID** (Delete). Delete an announcement by id in ManageEngine MDM. Returns an empty 204 response on success. Required: id.
- **ManageEngine MDM announcements get group distribution** (Get). Get the group IDs to which a ManageEngine MDM announcement is distributed. Returns: groups. Required: announcement_id.
- **ManageEngine MDM announcements distribute to groups** (Action). Distribute an announcement to specified groups in ManageEngine MDM. Returns an empty 204 response on success. Required: announcement_id, group_ids.
- **ManageEngine MDM announcements remove from groups** (Delete). Disassociate a ManageEngine MDM announcement from the specified groups. Returns an empty 204 response on success. Required: announcement_id, group_ids.
- **ManageEngine MDM announcements distribute to devices** (Action). Distribute an announcement to specific devices in ManageEngine MDM by providing a list of device IDs. Returns an empty 204 response on success. Required: announcement_id, device_ids.
- **ManageEngine MDM announcements remove from devices** (Delete). Remove an announcement from specific devices in ManageEngine MDM by disassociating it from the given device IDs. Returns an empty 204 response on success. Required: announcement_id, device_ids.
- **ManageEngine MDM announcements get device distribution** (Get). Get the device IDs to which an announcement is distributed in ManageEngine MDM. Returns: devices. Required: announcement_id.
- **List all ManageEngine MDM enrollment settings** (List). Get ManageEngine MDM enrollment settings configuration. Returns: is_authentication_handling_available, selected_ad, directory_authentication, auth_mode, email_unmanaged_alerts, notify_device_unmanaged, is_ad_integrated.
- **ManageEngine MDM enrollment settings save** (Action). Save ManageEngine MDM enrollment settings for on-premises. Returns: status. Required: auth_mode, email_unmanaged_alerts, notify_device_unmanaged.
- **ManageEngine MDM enrollment settings save inactive policy** (Action). Save ManageEngine MDM inactive device policy settings, configuring the action type and inactivity thresholds for devices that have not contacted the MDM server. Returns: status. Required: action_type, action_threshold, inactive_threshold.
- **ManageEngine MDM enrollment settings delete inactive policy** (Delete). Delete ManageEngine MDM inactive device policy settings for devices that have not contacted the MDM server. Returns an empty 204 response on success.
- **List all ManageEngine MDM users** (List). List managed users in ManageEngine MDM with optional filtering by group, user type, or search keyword. Returns: email_address, user_id, name, phone_number, domain.
- **ManageEngine MDM users remove multiple** (Delete). Remove multiple managed users from ManageEngine MDM by providing their user IDs. Returns an empty 204 response on success. Required: user_ids.
- **Get single ManageEngine MDM user by ID** (Get). Get details of a specific managed user in ManageEngine MDM by id. Returns: user_email, user_id, name, phone_number, device_count. Required: id.
- **ManageEngine MDM users remove** (Delete). Remove a specific managed user from ManageEngine MDM. Returns an empty 204 response on success. Required: user_id.
- **Update a ManageEngine MDM user by ID** (Update). Modify a managed user in ManageEngine MDM by updating their email, name, and phone number. Returns an empty 202 response on success. Required: id, user_email, user_name, phone_number.
- **ManageEngine MDM users get devices** (Get). Get device IDs associated with a user in ManageEngine MDM by filtering on email and domain. Returns: device_ids. Optional: email_id, domain_name.
- **List all ManageEngine MDM compliance** (List). List all fence policies (compliance profiles) in ManageEngine MDM. Returns: compliance_id, collection_id, compliance_status, compliance_name, platform_type, created_by, created_by_name, creation_time, last_modified_by, last_modified_by_name, last_modified_time, total_count, yet_to_evaluate_count, compliant_devices_count, non_compliant_devices_count, not_applicable_count, notification_sent_count.
- **Create a ManageEngine MDM compliance** (Create). Create a new fence policy (compliance profile) in ManageEngine MDM with geofence rules and violation actions. Returns: policies, description, rule, compliance_name, collection_id, is_moved_to_trash, compliance_id. Required: policies, description, compliance_name.
- **ManageEngine MDM compliance delete multiple** (Delete). Delete multiple fence policies in ManageEngine MDM. Returns an empty 204 response on success.
- **Get single ManageEngine MDM compliance by ID** (Get). Get a specific fence policy (compliance profile) by id in ManageEngine MDM. Returns: policies, description, rule, compliance_name, collection_id, is_moved_to_trash, compliance_id. Required: id.
- **Update a ManageEngine MDM compliance by ID** (Update). Modify an existing fence policy (compliance profile) by id in ManageEngine MDM with updated geofence rules and violation actions. Returns: policies, description, rule, compliance_name, collection_id, is_moved_to_trash, compliance_id. Required: id, policies, description, compliance_name.
- **Delete a ManageEngine MDM compliance by ID** (Delete). Delete a Fence Policy (compliance profile) in ManageEngine MDM by id. Returns an empty 204 response on success. Required: id.
- **List all ManageEngine MDM compliance groups** (List). List Fence Policy groups associated with compliance policies in ManageEngine MDM. Returns: group_id, group_name, group_type, member_count.
- **Create a ManageEngine MDM compliance group** (Create). Associate a Fence Policy to multiple device groups in ManageEngine MDM. Returns an empty 204 response on success. Required: group_ids.
- **Get single ManageEngine MDM compliance group by ID** (Get). Get details of a specific Fence Policy group by id in ManageEngine MDM. Returns: group_id, group_name, group_type, member_count. Required: id.
- **Update a ManageEngine MDM compliance group by ID** (Update). Modify a Fence Policy group by id in ManageEngine MDM. Returns: group_id, group_name, group_type, member_count. Required: id.
- **Delete a ManageEngine MDM compliance group by ID** (Delete). Delete a Fence Policy group by id in ManageEngine MDM. Returns an empty 204 response on success. Required: id.
- **ManageEngine MDM compliance groups associate** (Action). Associate a Fence Policy to multiple device groups in ManageEngine MDM. Returns an empty 204 response on success. Required: compliance_id, group_ids.
- **ManageEngine MDM compliance groups disassociate** (Action). Disassociate a Fence Policy from multiple device groups in ManageEngine MDM. Returns an empty 204 response on success. Required: compliance_id.
- **List all ManageEngine MDM scheduled actions** (List). List scheduled actions in ManageEngine MDM. Returns an empty 202 Accepted response on success.
- **Create a ManageEngine MDM scheduled action** (Create). Create a scheduled action in ManageEngine MDM to execute Remote Restart or Shutdown on devices in groups at a specific date, time, week, or day. Returns an empty 202 Accepted response on success. Required: groups, time_zone, schedule_params, reason_message, execution_type, expiry, schedule_once_time.
- **Get single ManageEngine MDM scheduled action by ID** (Get). Get a scheduled action by id in ManageEngine MDM. Returns an empty 202 Accepted response on success. Required: id.
- **Update a ManageEngine MDM scheduled action by ID** (Update). Update an existing scheduled action in ManageEngine MDM. Returns an empty 202 Accepted response on success. Required: id, group_action_id, groups, time_zone, schedule_params, reason_message, execution_type, expiry, schedule_once_time.
- **Delete a ManageEngine MDM scheduled action by ID** (Delete). Delete (suspend) a scheduled action in ManageEngine MDM, stopping it from being executed on devices in groups. Returns an empty 202 Accepted response on success. Required: id, group_action_id.
- **ManageEngine MDM scheduled actions suspend** (Suspend). Suspend a scheduled action in ManageEngine MDM to stop it from being executed on devices in groups. Returns an empty 202 response on success. Required: action_id.
- **ManageEngine MDM scheduled actions validate group** (Validate). Validate groups on which a scheduled action needs to be executed in ManageEngine MDM before scheduling. Returns an empty 202 Accepted response on success. Required: groups, action_name.
- **List all ManageEngine MDM vpp** (List). List all VPP (Volume Purchase Program) location tokens added to ManageEngine MDM. Returns: non_vpp_app_count, vpp_token_details, trash_count.
- **Create a ManageEngine MDM vpp** (Create). Add a new VPP location token (server token) to ManageEngine MDM. Returns: location_name, expired, businessstore_id, organisation_name, expiry_date. Required: vpp_token_file, email_address.
- **Get single ManageEngine MDM vpp by ID** (Get). Get details of a specific VPP location token in ManageEngine MDM by id. Returns: non_vpp_apps_count, location_name, total_apps_count, expiry_date, last_sync_time, org_type, organization_name, businessstore_id, license_assign_type. Required: id.
- **Update a ManageEngine MDM vpp by ID** (Update). Modify an existing VPP location token in ManageEngine MDM by id. Returns an empty 202 response on success. Required: id, vpp_token_file, email_address.
- **Delete a ManageEngine MDM vpp by ID** (Delete). Delete a specific VPP location token from ManageEngine MDM by id. Returns an empty 202 response on success. Required: id.
- **ManageEngine MDM vpp get apps** (Get). Get the list of VPP apps for a specific VPP token in ManageEngine MDM. Returns the apps array where each item includes appgroupid, appname, displayimageloc, licensecount, packageid, and resourcecount. Required: vpp_id.
- **ManageEngine MDM vpp associate apps** (Action). Associate VPP apps to devices for a specific VPP token in ManageEngine MDM. Returns an empty 204 response on success. Required: vpp_id.
- **ManageEngine MDM vpp disassociate apps** (Action). Disassociate VPP apps from devices for a specific VPP token in ManageEngine MDM. Returns an empty 204 response on success. Required: vpp_id.
- **ManageEngine MDM vpp delete all** (Delete). Delete all VPP location tokens from ManageEngine MDM. Associated apps are also removed once the tokens are deleted. Returns an empty 202 response on success.
- **ManageEngine MDM vpp get all sync status** (Get). Get the sync status of all VPP location tokens in ManageEngine MDM. Returns the vpp_sync_details array where each item includes businessstore_id, if_sync_failed, status, failed_apps_count, total_apps_count, completed_apps_count, successful_apps_count, remarks, and other_mdm_hostname.
- **ManageEngine MDM vpp sync all** (Sync). Sync all VPP location tokens with the ManageEngine MDM server. Returns an empty 202 response on success.
- **ManageEngine MDM vpp get failure details** (Get). Get failure details for apps that failed to sync under a specific VPP location token in ManageEngine MDM. Returns the apps list including appgroupid, appname, displayimageloc, licensecount, packageid, and resourcecount for each failed app. Required: vpp_id.
- **ManageEngine MDM vpp get sync status** (Get). Get the sync status of a specific VPP location token in ManageEngine MDM. Returns: if_license_insufficient, if_sync_failed, apps_with_insufficient_licenses, failed_apps_count, total_apps_count, successful_apps_count, last_sync_time, completed_apps_count, remarks, status, other_mdm_hostname. Required: vpp_id.
- **ManageEngine MDM vpp sync** (Sync). Sync a specific VPP location token with the ManageEngine MDM console. Returns an empty 202 response on success. Required: vpp_id.
- **List all ManageEngine MDM files** (List). List files uploaded to ManageEngine MDM. Returns: content_type, file_name, file_id, expiry_time, content_length.
- **Create a ManageEngine MDM file** (Create). Upload a file to ManageEngine MDM for usage in other API calls. Returns: content_type, file_name, file_id, expiry_time, content_length. Required: content_disposition, stream. The /api/v1/mdm/files endpoint is deprecated.
- **Get single ManageEngine MDM file by ID** (Get). Get details of a specific file in ManageEngine MDM by id. Returns: content_type, file_name, file_id, expiry_time, content_length. Required: id.
- **Delete a ManageEngine MDM file by ID** (Delete). Delete a file from ManageEngine MDM by id. Returns an empty 204 response on success. Required: id.
- **ManageEngine MDM files associate to devices** (Action). Associate a file to one or more devices in ManageEngine MDM. Returns an empty 204 response on success. Required: file_id.
- **ManageEngine MDM files disassociate from devices** (Action). Disassociate a file from devices in ManageEngine MDM. Returns an empty 204 response on success. Required: file_id.
- **ManageEngine MDM files associate to groups** (Action). Associate a file to one or more groups in ManageEngine MDM. Returns an empty 204 response on success. Required: file_id, groups.
- **ManageEngine MDM files disassociate from groups** (Action). Disassociate a file from groups in ManageEngine MDM. Returns an empty 204 response on success. Required: file_id.
- **ManageEngine MDM files distribute to devices** (Action). Distribute a file to specific devices in ManageEngine MDM. Returns an empty 204 response on success. Required: file_id.
- **ManageEngine MDM files distribute to groups** (Action). Distribute a file to one or more device groups in ManageEngine MDM. Returns a distribution status response confirming the file was sent to the specified groups. Required: file_id.
