# AI Agents

AI-driven agents that continuously learn from tickets, users, and organizational context to automatically generate a dynamic knowledge base in real time.

## Agents

- [Account Lockouts / MFA](/agents/account-lockouts-mfa): Password resets remain high despite self-service due to complex MFA chains.
- [Application Access Request](/agents/application-access-request): Streamlines how employees request and receive access to business applications, with built-in approvals and automatic provisioning to reduce IT load and accelerate time-to-productivity.
- [Asset Activity Detection](/agents/asset-activity-detection): Identifies managed assets that haven't reported activity within a configurable period, surfacing lost, stolen, or no-longer-used devices.
- [Automated Knowledge Base Generation](/agents/knowledge-base-auto-generation): Automatically identifies knowledge gaps from resolved tickets and generates draft KB articles for review.
- [Certificate Expiration Detection](/agents/certificate-expiration-detection): Proactively tracks SSL/TLS certificate expiration dates and flags those approaching their end date
- [Device Recovery](/agents/device-recovery): Automated device recovery with identity verification and recovery key delivery.
- [Device Uptime Detection](/agents/device-uptime-detection): Identifies devices that haven't restarted within policy and prompts the user to act.
- [Domain Access Security Approval](/agents/domain-access-security-approval): Multi-stakeholder approval workflow for sensitive domain access with security and endpoint validation.
- [EDR Misconfiguration Detection](/agents/edr-misconfiguration-detection): Monitor and validate EDR misconfigurations across different environments
- [EDR Policy Compliance Discovery](/agents/edr-policy-compliance-discovery): Continuous EDR policy compliance monitoring with automated remediation for non-compliant devices.
- [EDR Status Discovery](/agents/edr-status-discovery): Maintains endpoint protection coverage by continuously detecting agent issues such as inactive installs, outdated versions, stale scans, or active threats.
- [Employee Account Termination](/agents/employee-account-termination): Provides a controlled, approval-driven path to deactivate user accounts and terminate active sessions immediately upon approval
- [Employee Asset Purchase](/agents/employee-asset-purchase): Automated employee asset purchase program with eligibility checks, depreciation-based pricing, legal consent, and sequential approvals.
- [Employee Offboarding](/agents/employee-offboarding): Comprehensive offboarding orchestration with full system access cleanup and asset recovery coordination.
- [Employee Onboarding](/agents/new-hire-onboarding): End-to-end new hire onboarding covering account provisioning, software access setup, ticket orchestration, and welcome communication.
- [Employee Referral](/agents/employee-referral): Captures employee referrals and creates them directly as applications in the ATS, removing manual handoffs between employees and recruiting.
- [Employees with No Assigned Assets](/agents/employees-with-no-assigned-assets): Flags active employees with no assigned equipment to catch missing records, undelivered hardware, or gaps in the onboarding process.
- [GitHub Access Management](/agents/github-access-management): Governs how users are added to, removed from, or have their permissions changed across GitHub repositories and teams, with approval workflows and automatic permission provisioning.
- [Group Membership Management](/agents/group-membership-management): Governs how users are added to or removed from identity provider groups, replacing ad-hoc requests with a controlled, auditable workflow
- [IDP Group Assignment](/agents/idp-group-assignment): Automates identity group membership based on employee role, department, and access requirements
- [IdP MFA Reset](/agents/idp-mfa-reset): Securely restores access for users who have lost or replaced their authentication device, with identity verification and guided re-enrollment built in
- [Inactive Employees](/agents/inactive-employees): Detects inactive employee accounts and drives remediation through automated suspension and manager notification
- [Knowledge Article Recommendation](/agents/knowledge-article-recommendation): Suggest relevant knowledge base articles to agents and users during ticket creation.
- [License Expiration Discovery](/agents/license-expiration-discovery): Gives IT and procurement visibility into upcoming license expirations with enough lead time to renew, renegotiate, or decommission ahead of disruption.
- [Low Storage Device Detection](/agents/low-storage-device-detection): Proactively surfaces devices running out of storage so issues are resolved before they cause failed updates, performance degradation, or data loss.
- [PTO Request](/agents/pto-request): Provides a single, structured flow for submitting, approving, and tracking paid time off - improving visibility for employees, managers, and HR.
- [Password Reset Request](/agents/password-reset-request): Automated password reset request with identity verification and temporary password delivery.
- [Printers Health Detection](/agents/printers-health-detection): Continuously monitors the printer fleet for connectivity, toner, and maintenance issues, ensuring uptime across every location without manual oversight.
- [Slack & Teams Operations](/agents/slack-teams-operations): Manage Slack and Teams channels and membership, create, archive, and add members, with automated approval routing.
- [Software Compliance Report](/agents/software-compliance-report): Runs periodic access reviews by having managers attest to each direct report's application access, then consolidates the results into an audit-ready record to support compliance requirements.
- [Unassigned Assets](/agents/unassigned-assets): Identifies active devices with no assigned owner, closing accountability gaps and keeping the asset register reliable.
- [Unauthorized Applications Detection](/agents/unauthorized-applications-detection): Highlights applications with low or no usage so IT can reclaim licenses, reduce SaaS spend, and shrink the application attack surface
- [Unencrypted Assets](/agents/unencrypted-assets): Automated detection of devices without full-disk encryption with compliance enforcement workflows.
- [Unlock User Account](/agents/unlock-user-account): Restores access for locked-out users across all integrated identity providers through a single verified, automated flow
- [Unused Application Discovery](/agents/unused-application-discovery): Surfaces applications with low or no usage so IT can reclaim licenses and reduce SaaS spend.