Skip to main content
Connector guides

Connect Addigy

Addigy is a cloud-based Apple device management (MDM) platform for MSPs — it manages macOS, iOS, iPadOS, and tvOS devices. Connecting it to StackJack gives your AI assistant addigy_ MCP tools covering…

Written By Christopher Scaminaci

Last updated 6 days ago

Addigy is a cloud-based Apple device management (MDM) platform for MSPs — it manages macOS, iOS, iPadOS, and tvOS devices. Connecting it to StackJack gives your AI assistant addigy_ MCP tools covering devices and facts, policies, MDM commands and profiles, software deployment, monitoring and alerts, compliance, and more. See the generated Addigy tool reference for the current inventory, input schemas, plan tiers, and safety notes. MCP (Model Context Protocol) tools are the standardized commands an AI assistant can call through StackJack.

Two things make Addigy setup different from most connectors:

  • The API token carries its own permissions. You choose exactly what the token may do when you create it in Addigy — and that choice is permanent for that token.
  • Addigy enforces a severe rate-limit penalty. Exceeding the vendor's limit locks the token out of the API for 24 hours. StackJack's built-in pacing makes this unreachable from StackJack alone, but you should still read the warning below.

How StackJack authenticates to Addigy

Addigy API v2 uses a static API token sent with every request. There is no OAuth flow and nothing to refresh — the token alone authenticates every call, so treat it like a password. The base URL is fixed (Addigy is a global SaaS with no regional endpoints), so the token is the only thing you enter.

Before you begin

  • In StackJack: you need a role that can manage connectors (tenant Owner, a co-owner, or an Administrator).
  • In Addigy: your user needs View Integrations API Keys, Create Integrations API Keys, and Delete Integrations API Keys, plus access to Account → Integrations → API & Webhooks.
  • Plan the token's permissions first — see the next section. Tokens cannot be edited after creation, so deciding up front saves you a second trip.

Choosing the token's permissions

When you create an Addigy V2 token, you select the permission categories it carries (device reads, policy edits, MDM commands, and so on). Two independent gates then apply to every AI call:

  1. StackJack's tool permissions — which addigy_ tools your plan and your tool selections allow.
  2. The Addigy token's own permissions — what Addigy itself will accept from that token.

Both must permit an operation for it to succeed. If a tool call returns a 403 error, the token lacks that endpoint's permission — and because tokens are immutable, the fix is always to create a new token with the missing permission and update the credential in StackJack.

Use least privilege, but note that StackJack's Addigy tools span devices, policies, MDM, software, monitoring, and more — grant the areas you actually intend your AI agents to use. A note on naming, so the three vocabularies don't confuse you: Addigy's token-creation screen labels its permissions in plain language (View Devices, Execute Commands, Create MDM Profiles); the Addigy API reports a granted set as identifiers like com.addigy.devices.view (the addigy_get_api_key_permissions tool shows yours); and the categories below are StackJack's own permission categories, the ones the portal's Permissions page uses to map each tool. Match them to Addigy's screen by capability area:

Tool familyStackJack permission categories
Devices & Factsread:devices / edit:devices / read:facts / read:custom-facts / edit:custom-facts
Policiesread:policies / edit:policies
MDM Commandsread:mdm-commands / edit:mdm-commands (lock, erase, restart, lost mode, FileVault)
MDM Profiles & Settingsread:mdm-profiles / edit:mdm-profiles / edit:mdm-settings
Software & Appsread:software / edit:software / read:prebuilt-apps / edit:prebuilt-apps / read:managed-apps / edit:managed-apps
Scripts & Maintenanceread:scripts / edit:scripts / read:maintenance / edit:maintenance / edit:os-users / edit:temp-admin
Monitoring & Alertsread:monitoring / edit:monitoring / read:system-events
End Users & Organizationsread:end-users / edit:end-users / read:organizations / read:users / edit:users
Compliance & Updatesread:compliance-rules / edit:compliance-rules / read:benchmarks / edit:benchmarks / read:system-updates / edit:system-updates
Integrationsread:autotask / edit:autotask / read:connectwise / edit:connectwise / read:mbov / edit:mbov / read:tickets / edit:tickets
Files, Exports & Reportsread:files / edit:files / read:exports / read:reports / edit:reports
Variables & Webhooksread:variables / edit:variables / read:static-fields / edit:static-fields / read:webhooks / edit:webhooks

The Permissions page in the StackJack portal maps each individual tool to the exact StackJack categories it needs — use it to decide which areas your token must cover, then grant the matching plainly-labeled permissions on Addigy's token screen. After saving, addigy_get_api_key_permissions lists what the token can actually do.

Step 1 — Create a V2 API token in Addigy

  1. Sign in with the three API-key management permissions listed above and navigate to Account → Integrations → API & Webhooks.
  2. In the Addigy API section, open the V2 tab and click New API Token.
  3. Choose the permissions to grant (see the section above).
  4. Copy the token immediately and store it securely — Addigy will not show it again. Anyone with the token has its full permission set on your Addigy organization.

Step 2 — Add the token in StackJack

  1. In the StackJack portal, open Connectors.
  2. Find the Addigy card. Click How To Connect for the same steps inline, or Configure to enter the credential.
  3. Paste the token into the API Token field. There is no URL to enter — the base URL is fixed at https://api.addigy.com/api/v2.
  4. Click Save.

Addigy credential-field example showing the single API Token field and the fixed base URL note
Field-layout example from the earlier centered setup shell. The current Portal presents this field in the connector's right-side drawer.

What happens when you save

  • The token is stored encrypted in Azure Key Vault — never in the StackJack database, and it is never shown back to you.
  • If this is the first time you configure Addigy, a Free-tier subscription for the connector is created automatically so its Free tools work right away.
  • StackJack immediately live-validates the token by asking Addigy for the token's own permission list. Validation never blocks the save: you'll either see a success confirmation or a "saved but validation failed" warning with the reason.
  • The connector card shows the current connection and validity status from then on.

The 24-hour lockout — read this before pointing anything else at the token

Addigy enforces a hard limit of 1,000 API requests per 10 seconds — and once exceeded, it rejects all further requests for 24 hours. There is no early release.

StackJack applies its own conservative pacing (600 requests per minute per tenant), well below the vendor's burst ceiling. But Addigy counts all traffic using the token, not just StackJack's. To keep the lockout unreachable:

  • Create a dedicated token for StackJack. Don't reuse a token that another integration, script, or dashboard also uses.
  • If every Addigy tool call suddenly starts failing and your team runs other heavy Addigy integrations, suspect the lockout — it clears on its own after 24 hours.

Working with multiple Addigy organizations

If your Addigy account has child organizations, the tools support all three access patterns:

  • Plain tools act on the organization the API token itself belongs to.
  • Organization-scoped tools take an organizationId parameter to act on a specific child organization. Discover the IDs with the addigy_list_child_organizations tool.
  • Aggregate tools accept a multitenancy option to span all child organizations in one call.

Aggregate tools call Addigy's Organization-Aggregate (/oa/) endpoints, which require an MSP parent-organization API token. A token issued for a single (non-parent) organization is rejected with a 400 Bad Request for these tools even though the token itself is valid — issue the StackJack token from your Addigy parent organization, or use an organization-scoped tool with an explicit organizationId instead.

Plans and available tools

  • Free includes the read tools (device and fact reads, policy reads, monitoring reads, and so on).
  • Pro adds the write tools — MDM commands, policy and profile edits, software deployment, and other state-changing operations.
  • Business offers the same tool set as Pro with a higher monthly call quota.

Addigy has no per-user sign-in flow, so there is no per-user attribution — all AI traffic uses the shared token. Current pricing and quotas are shown in the portal's Billing page and at checkout.

Rotating or replacing the token

To rotate: create a new token in Addigy (with the same or updated permissions), paste it into Connectors → Addigy → Configure, save, and then delete the old token in Addigy. The StackJack save takes effect immediately, so there is no gap if you delete the old token afterwards.

Troubleshooting

SymptomLikely causeWhat to do
A specific tool returns 403 while others workThe token lacks that endpoint's permission (tokens are immutable)Create a new token in Addigy with the missing permission and update the credential in StackJack
"Saved but validation failed" right after savingToken mis-pasted, revoked, or deleted in AddigyRe-copy the token from Addigy (or create a new one) and save again
Every Addigy call suddenly fails, other integrations share the tokenVendor 24-hour rate-limit lockoutWait out the lockout; then move StackJack to a dedicated token
Tool acts on the wrong organizationPlain tool used where an org-scoped call was neededPass organizationId (find it via addigy_list_child_organizations) or use an aggregate tool with multitenancy
An aggregate/multi-org tool returns 400 (Bad Request) while single-org tools workThe tool calls an Organization-Aggregate (/oa/) endpoint that needs an MSP parent-organization token; a single-organization account is rejected with 400. The token is valid — this is not an auth failureIssue the StackJack token from your Addigy parent organization, or call an org-scoped tool with an organizationId from addigy_list_child_organizations. If you already use a parent-org token, re-check the tool's documented body fields — a malformed or incomplete request also returns 400
Write tools missing from your AI's tool listConnector is on the Free tier, or the tools aren't selected for your clientUpgrade the Addigy connector plan and check your tool selections on the MCP Setup page

Addigy tools

addigy_ · 255 tools · Free 119 · Pro 136

Devices

ToolWhat it does
addigy_assign_devices_to_policy
Pro · Destructive
Assign one or more devices to one or more policies.
addigy_delete_device
Pro · Destructive
Remove a single device from Addigy by its serial number.
addigy_get_device_benchmark_compliance_status
Free · Read-only
Get a device's compliance statuses per security benchmark for a specific organization.
addigy_get_device_policy_assignments
Free · Read-only
Get the list of policy IDs assigned to a specific device.
addigy_get_managed_admin_password
Free · Read-only
Reveal the current managed admin password for a specific account on a device.
addigy_get_mdm_device_details
Free · Read-only
Get MDM device details for a single device including enrollment profile, APN certificate, and last MDM response.
addigy_list_available_facts
Free · Read-only
List the available device facts for an organization.
addigy_list_device_managed_admins
Free · Read-only
List the managed admin accounts associated with a specific device.
addigy_query_devices_compliance_status
Free · Read-only
Get overall compliance status for a set of devices.
addigy_query_installed_apps_via_agent
Free · Read-only
Query installed applications reported by the Addigy agent for one or more devices.
addigy_query_installed_apps_via_mdm
Free · Read-only
Query installed applications reported via MDM for one or more devices.
addigy_query_mdm_certificates
Free · Read-only
Paginated list of certificates installed on MDM devices.
addigy_rotate_managed_admin_password
Pro · Destructive
Rotate the managed admin password for a specific account on a device.
addigy_search_devices
Free · Read-only
Universal device search: query for devices by any device fact (e.g. serial_number, hostname, model).
addigy_test_mdm_device_response
Free · Read-only
Test the MDM response for a single device — probes whether the device responds to an MDM command, useful for diagnosing unresponsive or stale MDM enrollments.
addigy_unassign_devices_from_policy
Pro · Destructive
Unassign one or more devices from one or more policies.

Organization & Users

ToolWhat it does
addigy_create_user
Pro · Write
Create a new organization user (admin).
addigy_delete_user
Pro · Destructive
Remove a user from the organization, identified by their email.
addigy_disable_beta_feature
Pro · Destructive
Disable a Beta Feature for the organization, identified by its feature_flag_key (discover keys with addigy_list_public_beta_features).
addigy_enable_beta_feature
Pro · Write
Enable a Beta Feature for the organization.
addigy_get_api_key_permissions
Free · Read-only
Get the permission set granted to the API key currently in use.
addigy_get_billing_account
Free · Read-only
Get the billing account record for a specific organization — contact, payment, and account-status details.
addigy_get_billing_data
Free · Read-only
Get billing data (device counts, charges, and usage figures) for a specific organization.
addigy_get_whoami
Free · Read-only
Identify the organization the API token belongs to, via GET /configuration/whoami.
addigy_list_billing_invoices
Free · Read-only
List the billing invoices for a specific organization.
addigy_list_child_organizations
Free · Read-only
List the child organizations belonging to a parent organization (MSP multi-tenant view).
addigy_list_public_beta_features
Free · Read-only
List all Beta Features available to the organization, including each feature's flag key and whether it is currently enabled.
addigy_query_ade_token_policy_assignments
Free · Read-only
Get the list of Automatic Device Enrollment (ADE / DEP) tokens assigned to the given policies.
addigy_query_organization_users
Free · Read-only
Query the users (admins) belonging to a specific organization.
addigy_update_user
Pro · Write
Update an existing organization user, matched by email.

Policies

ToolWhat it does
addigy_create_policy
Pro · Write
Create a new policy within a specific organization.
addigy_create_policy_rule
Pro · Destructive
Add an automatic-assignment (Smart Software / custom filter) rule to a policy within an organization.
addigy_delete_policy
Pro · Destructive
Permanently delete a policy from a specific organization.
addigy_delete_policy_parent
Pro · Destructive
Detach a policy from its parent, promoting it to a top-level policy within an organization.
addigy_delete_policy_rule
Pro · Destructive
Remove an automatic-assignment rule from a policy within an organization.
addigy_get_policy_rule
Free · Read-only
Get the automatic-assignment rule configured for a single policy within an organization.
addigy_list_mdm_profile_policy_assignments
Free · Read-only
List the MDM configuration profiles currently assigned to policies for the API key's own organization.
addigy_list_policy_rules
Free · Read-only
List all automatic-assignment (custom filter) rules across every policy in an organization.
addigy_query_policies
Free · Read-only
Query an organization for all policies, or filter to specific policies, and return their full info.
addigy_update_policy
Pro · Write
Update an existing policy's editable attributes (name, color, icon) for a specific organization.
addigy_update_policy_parent
Pro · Destructive
Re-parent a policy, moving it under a different parent policy within an organization (changes the policy hierarchy).

MDM Commands

ToolWhat it does
addigy_clear_passcode
Pro · Destructive
Issue an MDM Clear Passcode command, removing the unlock passcode from a managed device.
addigy_clear_restrictions_password
Pro · Destructive
Issue an MDM Clear Restrictions Password command, removing the restrictions (Screen Time) passcode from a managed device.
addigy_delete_device_user
Pro · Destructive
Issue an MDM Delete User command, removing an active local user account from a managed device.
addigy_disable_lost_mode
Pro · Destructive
Issue an MDM command that disables Lost Mode on a managed device (re-enable with addigy_enable_lost_mode).
addigy_disable_remote_desktop
Pro · Destructive
Issue an MDM command that disables Remote Desktop (screen sharing) on a managed device (re-enable with addigy_enable_remote_desktop).
addigy_enable_lost_mode
Pro · Destructive
Issue an MDM command that puts a managed device into Lost Mode with an on-screen message, phone number, and footnote.
addigy_enable_remote_desktop
Pro · Destructive
Issue an MDM command that enables Remote Desktop (screen sharing) on a managed device (disable with addigy_disable_remote_desktop).
addigy_erase_device
Pro · Destructive
Issue an MDM Erase Device command, wiping a managed macOS/iOS/iPadOS/tvOS device.
addigy_get_command_output
Free · Read-only
Retrieve the captured output (stdout/stderr/exit status) of a previously dispatched device command.
addigy_get_device_location
Free · Read-only
Issue an MDM command asking a device in Lost Mode to report its current location (enable Lost Mode first with addigy_enable_lost_mode; read the last reported coordinates with addigy_get_last_device_location).
addigy_get_last_device_location
Free · Read-only
Read the last known location reported by a device while in Lost Mode (request a fresh report with addigy_get_device_location).
addigy_list_device_users
Free · Read-only
Issue an MDM Request User List command, asking a managed device to report its local user accounts to Addigy (read the cached result afterward with addigy_list_mdm_device_users).
addigy_list_mdm_device_users
Free · Read-only
Return the list of known device users previously reported to Addigy via the Request User List command (addigy_list_device_users triggers that command).
addigy_lock_device
Pro · Destructive
Issue an MDM Device Lock command, rendering the device unusable until the passcode is entered.
addigy_play_lost_mode_sound
Pro · Destructive
Issue an MDM command that plays a sound on a device currently in Lost Mode (enable Lost Mode first with addigy_enable_lost_mode).
addigy_request_airplay_mirroring
Pro · Destructive
Issue an MDM command prompting the user to share their screen via AirPlay Mirroring to a destination device.
addigy_restart_device
Pro · Destructive
Issue an MDM command that immediately restarts a managed device.
addigy_rotate_filevault_key
Pro · Destructive
Issue an MDM command that rotates the FileVault personal recovery key on a managed macOS device.
addigy_run_device_command
Pro · Destructive
Run an arbitrary shell command on one or more devices within an organization.
addigy_shutdown_device
Pro · Destructive
Issue an MDM command that shuts down a managed device.
addigy_stop_airplay_mirroring
Pro · Destructive
Issue an MDM command that stops AirPlay screen mirroring on a managed device.
addigy_unlock_device_user
Pro · Destructive
Issue an MDM command that unlocks a locked-out local user account on a managed device.

MDM Profiles & Settings

ToolWhat it does
addigy_assign_mdm_profile_to_policies
Pro · Destructive
Assign an MDM configuration profile to one or more policies.
addigy_create_custom_mdm_profile
Pro · Write
Create a Custom MDM Profile by uploading a raw .mobileconfig file.
addigy_create_mdm_profile
Pro · Write
Create an Addigy-native MDM profile (not a raw .mobileconfig — use addigy_create_custom_mdm_profile for that).
addigy_delete_mdm_profile
Pro · Destructive
Permanently delete an MDM configuration profile by its payload group ID.
addigy_deploy_profile_to_devices
Pro · Destructive
Deploy an MDM profile directly to a list of devices and/or managed users.
addigy_get_mdm_profile
Free · Read-only
Get a single MDM configuration profile by its payload group ID, including its configuration payloads.
addigy_get_mdm_profile_definition
Free · Read-only
Get the MDM configuration profile DEFINITION (payload manifest / schema) for a single Addigy payload type.
addigy_install_mdm_enrollment_profile
Pro · Destructive
Install an MDM enrollment profile on a device (via MDM if available, otherwise via the Addigy agent for macOS devices).
addigy_list_mdm_configuration_profiles
Free · Read-only
List all MDM configuration profiles in the organization, with their configuration payloads.
addigy_list_mdm_profile_definitions
Free · Read-only
List all MDM configuration profile DEFINITIONS (payload manifests / schemas).
addigy_list_mdm_profiles
Free · Read-only
Get a list of MDM profiles (the profiles installed on / pushed via MDM).
addigy_list_policy_profiles_by_payload_type
Free · Read-only
List the MDM profiles configured on a specific policy that match a given payload type.
addigy_query_mdm_payloads
Free · Read-only
Query MDM payload information and policy assignments for a specific organization.
addigy_set_app_analytics
Pro · Destructive
Send an MDM command to enable/disable app analytics sharing with app developers.
addigy_set_bluetooth_state
Pro · Destructive
Send an MDM command to enable/disable Bluetooth.
addigy_set_data_roaming
Pro · Destructive
Send an MDM command to enable/disable data roaming.
addigy_set_device_name
Pro · Destructive
Send an MDM command to set a device's name.
addigy_set_diagnostic_submission
Pro · Destructive
Send an MDM command to set the user preference for diagnostic submission.
addigy_set_personal_hotspot
Pro · Destructive
Send an MDM command to enable/disable Personal Hotspot.
addigy_set_voice_roaming
Pro · Destructive
Send an MDM command to enable/disable voice roaming.
addigy_set_wallpaper
Pro · Destructive
Send an MDM command to set a device's wallpaper (a one-time setting the user can later change).
addigy_unassign_mdm_profile_from_policies
Pro · Destructive
Unassign (detach) an MDM configuration profile from one or more policies.
addigy_update_mdm_profile_payloads
Pro · Destructive
Update (REPLACE) an MDM profile's payloads.

Custom Facts

ToolWhat it does
addigy_assign_custom_fact_to_policy
Pro · Destructive
Assign a custom fact to one or more policies.
addigy_create_custom_fact
Pro · Write
Create a custom fact.
addigy_delete_custom_fact
Pro · Destructive
Delete a custom fact by its id.
addigy_get_custom_fact
Free · Read-only
Get a single custom fact by id within a specific organization.
addigy_get_custom_fact_usage
Free · Read-only
Get the usage of a custom fact within a specific organization — where the fact is referenced (e.g. by policies).
addigy_list_custom_facts
Free · Read-only
Get all custom facts defined for the API key's own organization.
addigy_query_custom_facts
Free · Read-only
Get a paginated list of custom facts for the organization, filtered by id or name.
addigy_query_custom_facts_aggregate
Free · Read-only
Get a paginated list of custom facts aggregated across organizations.
addigy_unassign_custom_fact_from_policy
Pro · Destructive
Unassign a custom fact from a policy.
addigy_update_custom_fact
Pro · Write
Update an existing custom fact.

End Users

ToolWhat it does
addigy_assign_device_to_end_user
Pro · Write
Assign a device (agent) to an end user.
addigy_delete_end_user_device_assignments
Pro · Destructive
Remove device assignments from an end user.
addigy_delete_end_user_scim_credentials
Pro · Destructive
Delete one or more SCIM credentials by external id.
addigy_disable_end_user_scim
Pro · Destructive
Disable the SCIM integration that provisions end users for this organization.
addigy_enable_end_user_scim
Pro · Write
Enable a SCIM integration to provision end users for this organization.
addigy_get_end_user
Free · Read-only
Get a single end user by id.
addigy_get_end_user_scim_credentials
Free · Read-only
Get the SCIM credentials for one SCIM integration by external id.
addigy_import_end_user_devices
Pro · Write
Bulk-import end users and their device assignments from an inventory file (multipart upload).
addigy_query_end_user_device_import_metadata
Free · Read-only
Query metadata for prior end-user device imports (status, counts, errors per import file).
addigy_query_end_user_devices
Free · Read-only
Query device assignments for end users.
addigy_query_end_user_groups
Free · Read-only
Query end-user groups.
addigy_query_end_user_scim_credentials
Free · Read-only
Query SCIM credentials configured for end-user provisioning.
addigy_query_end_users
Free · Read-only
Query end users.
addigy_rotate_end_user_scim_token
Pro · Destructive
Rotate (regenerate) the SCIM token for one integration.
addigy_update_end_user_scim
Pro · Write
Update an existing SCIM integration used to provision end users.

Monitoring & Alerts

ToolWhat it does
addigy_act_on_received_alerts
Pro · Destructive
Perform a bulk action on received alerts within a specific organization: mute, acknowledge, or resolve.
addigy_assign_monitoring_item_to_policy
Pro · Destructive
Assign a custom monitoring item to a policy so the check applies to that policy's devices.
addigy_create_monitoring_item
Pro · Write
Create a custom monitoring item (a fact-based check that raises alerts).
addigy_delete_monitoring_item
Pro · Destructive
Permanently delete a custom monitoring item by its id.
addigy_list_received_alerts
Free · Read-only
List received alerts (monitoring checks that have fired), optionally filtered by status.
addigy_query_alert_level_stats
Free · Read-only
Aggregate received-alert counts grouped by alert level across organizations.
addigy_query_alert_name_stats
Free · Read-only
Aggregate received-alert counts grouped by alert name across organizations.
addigy_query_alert_remediation_stats
Free · Read-only
Aggregate received-alert counts grouped by remediation status across organizations.
addigy_query_alert_status_stats
Free · Read-only
Aggregate received-alert counts grouped by alert status across organizations.
addigy_query_alert_user_stats
Free · Read-only
Aggregate received-alert counts grouped by acknowledging/resolving user across organizations.
addigy_query_monitoring_items
Free · Read-only
List the organization's custom monitoring items, optionally filtered by id or a name-contains substring.
addigy_query_received_alerts
Free · Read-only
Query received alerts across organizations with rich filtering and pagination.
addigy_query_system_events
Free · Read-only
Search the organization's system-events audit stream (who did what, when — e.g. policy edits, command runs, device enrollments) with optional keyword highlighting and time-bucketed aggregation.
addigy_search_system_events
Free · Read-only
Search the organization's system-events audit stream via the /system-events/search surface (alternate to addigy_query_system_events) with optional keyword highlighting and time-bucketed aggregation.
addigy_unassign_monitoring_item_from_policy
Pro · Destructive
Remove a custom monitoring item from a policy (reverses addigy_assign_monitoring_item_to_policy).
addigy_update_monitoring_item
Pro · Write
Update an existing custom monitoring item.

Software

ToolWhat it does
addigy_assign_managed_app_config
Pro · Destructive
Assigns (or unassigns) a managed app configuration to an Apple Apps & Books (VPP) application.
addigy_assign_smart_software_to_policy
Pro · Destructive
Assigns a Smart Software item to a policy, given the organizationId, policyId and the Smart Software assetId.
addigy_create_managed_app_config
Pro · Write
Creates a managed app configuration for an Apps & Books (VPP) application.
addigy_create_smart_software
Pro · Write
Creates a new Smart Software item in an organization.
addigy_create_smart_software_version
Pro · Write
Creates a new version of an existing Smart Software item.
addigy_delete_managed_app_config
Pro · Destructive
Deletes the managed app configuration for a single Apps & Books (VPP) application, identified by its locationId and the app's bundleId.
addigy_delete_smart_software
Pro · Destructive
Deletes a Smart Software item by id, scoped to an organization.
addigy_get_managed_app_config
Free · Read-only
Gets the managed app configuration for a single Apps & Books (VPP) application, identified by its locationId (VPP/Apps-and-Books location) and the app's bundleId (e.g. com.microsoft.Outlook).
addigy_get_smart_software
Free · Read-only
Gets a single Smart Software item by id, scoped to an organization.
addigy_query_smart_software
Free · Read-only
Gets a paginated list of Smart Software items, optionally filtered.
addigy_query_vpp_token_policy_assignments
Free · Read-only
Gets the list of Apps & Books (VPP) tokens assigned to a set of policies.
addigy_search_managed_app_configs
Free · Read-only
Gets all managed app configurations for an Apps & Books (VPP) location.
addigy_unassign_smart_software_from_policy
Pro · Destructive
Unassigns a Smart Software item from a policy, given the organizationId, policyId and the Smart Software assetId.

Prebuilt Apps

ToolWhat it does
addigy_create_prebuilt_app_config
Pro · Write
Adds a Prebuilt App Configuration to a Policy — this is what actually deploys a Prebuilt App from the library to the Macs in a policy.
addigy_delete_prebuilt_app_config
Pro · Destructive
Removes a Prebuilt App Configuration from a Policy — undeploys the Prebuilt App from that policy.
addigy_get_prebuilt_app
Free · Read-only
Gets a single app from the Prebuilt App library by its app ID.
addigy_get_prebuilt_app_config
Free · Read-only
Gets a single Prebuilt App Configuration by its configuration ID.
addigy_get_prebuilt_app_version
Free · Read-only
Gets a single app version from the Prebuilt App library by its version ID.
addigy_query_prebuilt_app_configs
Free · Read-only
Queries Prebuilt App Configurations across organizations.
addigy_query_prebuilt_app_versions
Free · Read-only
Queries app versions in the Prebuilt App library to discover version ids (needed to pin a Prebuilt App Configuration via addigy_create_prebuilt_app_config).
addigy_query_prebuilt_apps
Free · Read-only
Queries the Prebuilt App library to discover available apps (and their app ids) for deployment via addigy_create_prebuilt_app_config.
addigy_update_prebuilt_app_config
Pro · Write
Updates an existing Prebuilt App Configuration (e.g. pin a new prebuilt_app_version_id, change enforcement_days or auto_update).

Scripts & Maintenance

ToolWhat it does
addigy_assign_maintenance_item_to_policy
Pro · Destructive
Assign a scheduled maintenance item to a policy so devices in that policy run it.
addigy_assign_os_user_to_policy
Pro · Destructive
Assign an OS user asset to a policy.
addigy_cancel_temp_admin_session
Pro · Destructive
Cancel a scheduled or active TempAdmin session for a Mac user account.
addigy_create_device_script_assignment
Pro · Destructive
Create a device script assignment — schedule a script (predefined command) to run on one or more devices in the organization.
addigy_create_maintenance_item
Pro · Write
Create a scheduled maintenance item (a recurring catalog maintenance task).
addigy_create_scripts
Pro · Write
Create one or more scripts (predefined commands) in an organization.
addigy_delete_device_script_assignment
Pro · Destructive
Delete a device script assignment — unschedule a script (predefined command) from a single device.
addigy_delete_maintenance_item
Pro · Destructive
Delete a scheduled maintenance item by its id (from addigy_query_maintenance_items).
addigy_delete_os_user
Pro · Destructive
Delete an OS User asset from an organization.
addigy_delete_script
Pro · Destructive
Delete a script (predefined command) by id from an organization.
addigy_list_device_script_assignments
Free · Read-only
List device script assignments available for the organization — the mapping of scripts (predefined commands) to the specific devices they are scheduled to run on.
addigy_query_maintenance_items
Free · Read-only
Query the organization's scheduled maintenance items (recurring catalog maintenance — bundles of scripts run on a frequency).
addigy_query_scripts
Free · Read-only
Query the organization's scripts (predefined commands) and return a paginated list.
addigy_schedule_temp_admin_session
Pro · Destructive
Schedule (or update the schedule for) a TempAdmin session that temporarily promotes a Mac user account to admin.
addigy_unassign_maintenance_item_from_policy
Pro · Destructive
Unassign a scheduled maintenance item from a policy.
addigy_unassign_os_user_from_policy
Pro · Destructive
Unassign an OS user asset from a policy.
addigy_update_maintenance_item
Pro · Write
Update an existing scheduled maintenance item.

System Updates

ToolWhat it does
addigy_email_installed_updates_report
Pro · Destructive
Requests that an installed-system-updates report for a policy's devices be generated and emailed to a recipient.
addigy_get_available_system_updates_status
Free · Read-only
Returns the OS software updates reported as available for a single device, each annotated with its current installation status (e.g. scheduled, downloading, installing, installed, failed).
addigy_get_device_installed_updates_report
Free · Read-only
Returns the history of OS software updates already installed on a single device, as reported via MDM.
addigy_get_system_updates_settings
Free · Read-only
Returns the configured system-updates settings for a policy — the per-OS (macOS/iOS/iPadOS/tvOS) update enforcement rules and the optional daily-send schedule.
addigy_get_system_updates_status
Free · Read-only
Returns the current system-updates statuses most recently reported for a single device (the live progress of in-flight OS updates).
addigy_list_available_system_updates
Free · Read-only
Returns the OS software updates most recently reported as available for a single device.
addigy_request_available_system_updates
Pro · Destructive
Issues an MDM command asking a device to report the OS software updates it currently has available.
addigy_request_system_updates_scan
Pro · Destructive
Issues an MDM command telling a device to scan for newly-available OS software updates, refreshing what addigy_list_available_system_updates / addigy_get_available_system_updates_status will return.
addigy_request_system_updates_schedule
Pro · Destructive
Issues an MDM command scheduling a specific OS software update to install on a single device.
addigy_request_system_updates_status
Pro · Destructive
Issues an MDM command asking a device to report its current system-updates statuses, refreshing what addigy_get_system_updates_status will return.
addigy_schedule_updates_for_devices
Pro · Destructive
Sends on-demand MDM system-update commands immediately to a specific list of devices, rather than waiting for the default daily 2AM UTC schedule.
addigy_schedule_updates_for_policy
Pro · Destructive
Sends on-demand MDM system-update commands immediately to every device in a policy, rather than waiting for the default daily 2AM UTC schedule.
addigy_set_system_updates_settings
Pro · Destructive
Creates or updates the system-updates settings for a policy, covering both MDM and Declarative Device Management (DDM) enforcement across macOS/iOS/iPadOS/tvOS, plus an optional send schedule.

Self Service

ToolWhat it does
addigy_create_self_service_config
Pro · Write
Creates a new Self Service configuration in the organization.
addigy_get_policy_self_service_configs
Free · Read-only
Get the Self Service configurations assigned by OS for a policy, aggregated across child organizations.
addigy_query_self_service_location_assets
Free · Read-only
Gets a list of available Self Service assets for the provided location IDs (token IDs), aggregated across child organizations.
addigy_update_self_service_config
Pro · Write
Updates an existing Self Service configuration in the organization.

Compliance & Benchmarks

ToolWhat it does
addigy_assign_benchmark_to_policy
Pro · Destructive
Assign a benchmark to a policy so the policy's devices are scored against it.
addigy_create_benchmark
Pro · Write
Create a new benchmark asset (a named OS-version + compliance-rule set used for device compliance scoring).
addigy_create_compliance_rule
Pro · Write
Create a compliance rule (an audit filter set, optionally with an auto-remediation script, that benchmarks reference for device compliance scoring).
addigy_delete_benchmark
Pro · Destructive
Delete a benchmark asset by id.
addigy_delete_compliance_rule
Pro · Destructive
Delete a compliance rule by id.
addigy_get_azure_ca_tenants_metadata
Free · Read-only
Get metadata for the unique, enabled Azure Conditional Access tenants.
addigy_get_compliance_rule_usage
Free · Read-only
Get usage details for a single compliance rule — which benchmarks reference it.
addigy_list_compliance_rules_using_script
Free · Read-only
List the compliance rules that reference a given remediation script.
addigy_query_azure_ca_account_status
Free · Read-only
Get Azure Conditional Access status for accounts tied to the given policy ids.
addigy_query_azure_ca_accounts_metadata
Free · Read-only
Get Azure Conditional Access metadata for all accounts tied to the given policy ids.
addigy_query_benchmarks
Free · Read-only
Search/list benchmark assets for an organization.
addigy_query_compliance_rules
Free · Read-only
Search/list compliance rules for an organization.
addigy_unassign_benchmark_from_policy
Pro · Destructive
Remove a benchmark from a policy so the policy's devices are no longer scored against it.
addigy_update_benchmark
Pro · Write
Update an existing benchmark asset (the named OS-version + compliance-rule set used for device compliance scoring).
addigy_update_compliance_rule
Pro · Write
Update an existing compliance rule.

Integrations

ToolWhat it does
addigy_assign_mbov_site_to_policy
Pro · Destructive
Assigns a MalwareBytes OneView (MBOV) site to a policy.
addigy_close_device_ticket
Pro · Destructive
Closes a single device ticket.
addigy_create_ticket_note
Pro · Write
Adds an organization note to a ticket.
addigy_disable_mbov_integration
Pro · Destructive
Disables the MalwareBytes OneView (MBOV) integration for an organization.
addigy_enable_mbov_integration
Pro · Write
Enables the MalwareBytes OneView (MBOV) integration for an organization, creating a new MBOV account.
addigy_get_autotask_account
Free · Read-only
Retrieves a single Autotask PSA account (company) by its account_id.
addigy_get_connectwise_account
Free · Read-only
Retrieves a single ConnectWise PSA account (company) by its account_id.
addigy_get_mbov_account_status
Free · Read-only
Returns the MalwareBytes OneView (MBOV) account status for an organization (whether the integration is enabled and its provisioning state).
addigy_get_mbov_account_usage
Free · Read-only
Returns MalwareBytes OneView (MBOV) catalog-code usage for an organization across a date window.
addigy_list_autotask_accounts
Free · Read-only
Lists the Autotask PSA accounts (companies) available to the Autotask integration for an organization.
addigy_list_connectwise_accounts
Free · Read-only
Lists the ConnectWise PSA accounts (companies) available to the ConnectWise integration for an organization.
addigy_list_device_tickets
Free · Read-only
Lists all support tickets attached to a single device within an organization.
addigy_list_mbov_policy_sites
Free · Read-only
Lists the MalwareBytes OneView (MBOV) sites assigned to a specific policy.
addigy_list_mbov_sites
Free · Read-only
Lists the MalwareBytes OneView (MBOV) sites available to an organization's MBOV account.
addigy_list_ticket_notes
Free · Read-only
Lists the notes (conversation entries) on a ticket.
addigy_sync_autotask_policy_devices
Pro · Destructive
Triggers a sync of a policy's devices with their mapped Autotask configurations.
addigy_sync_connectwise_policy_devices
Pro · Destructive
Triggers a sync of a policy's devices with their mapped ConnectWise configurations.
addigy_unassign_mbov_site_from_policy
Pro · Destructive
Removes a MalwareBytes OneView (MBOV) site from a policy.

Variables & Static Fields

ToolWhat it does
addigy_assign_static_field_to_devices
Pro · Write
Assign a static field value to one or more devices.
addigy_assign_variable_policy_value
Pro · Destructive
Assign a policy-specific override value to a variable, so devices in that policy resolve the variable to this value instead of the organization default.
addigy_create_static_fields
Pro · Write
Create a new static field for the organization.
addigy_create_variable
Pro · Write
Create a new organization variable.
addigy_delete_static_field
Pro · Destructive
Remove a static field from the organization by its id.
addigy_delete_variable
Pro · Destructive
Delete an organization variable by its key.
addigy_get_variable_policy_value
Free · Read-only
List policy-level override values for variables in an organization.
addigy_get_variable_usage
Free · Read-only
List where a variable is referenced across the organization (the assets/objects that consume it).
addigy_get_variable_value
Free · Read-only
Resolve a variable's organization-default value (ignoring any policy overrides).
addigy_get_variable_value_by_policy
Free · Read-only
Resolve a single variable's value as it applies within a specific policy (returns the policy override if one exists, otherwise the organization default).
addigy_list_device_static_field_values
Free · Read-only
List static field values assigned to devices across the organization (each record pairs a device/agent with a static field and its value).
addigy_list_static_fields
Free · Read-only
List all static fields defined for the organization (each with its id and name).
addigy_query_variables
Free · Read-only
Search/list organization variables.
addigy_unassign_variable_policy_value
Pro · Destructive
Remove a policy-level override value from a variable, reverting that policy to the variable's organization default.
addigy_update_static_field
Pro · Write
Update (rename) an existing static field for the organization.
addigy_update_variable
Pro · Write
Update an existing organization variable's default value.

Files, Exports & Reports

ToolWhat it does
addigy_delete_file
Pro · Destructive
Delete a file from an organization, identified by its file_id.
addigy_download_export_source
Free · Read-only
Export the raw data of a source over a date range.
addigy_get_file_metadata
Free · Read-only
Get an organization file's metadata by its id — name, md5_hash, size, upload date, and related fields.
addigy_get_report
Free · Read-only
Get a generated report by its report_id.
addigy_list_available_reports
Free · Read-only
Get the list of reports available to be requested.
addigy_list_export_sources
Free · Read-only
List the data sources available to be exported.
addigy_query_files
Free · Read-only
Get a paginated list of organization files.
addigy_query_report_statuses
Free · Read-only
Get the status of one or more reports.
addigy_request_report
Pro · Write
Request a report be generated for an organization.

Community

ToolWhat it does
addigy_get_community_fact
Free · Read-only
Get a single community-shared custom fact by its id.
addigy_get_community_script
Free · Read-only
Get a single community-shared script by its id.
addigy_list_featured_community_facts
Free · Read-only
Get featured community facts — the highest rated, most voted, most copied, and newest community-shared facts.
addigy_list_featured_community_scripts
Free · Read-only
Get featured community scripts — the highest rated, most voted, most copied, and newest community-shared scripts.
addigy_query_community_facts
Free · Read-only
Get a paginated list of community-shared facts.
addigy_query_community_scripts
Free · Read-only
Get a paginated list of community-shared scripts.
addigy_report_community_content
Pro · Write
Report a community fact or command to Addigy for review (e.g. inappropriate or broken content).

Webhooks

ToolWhat it does
addigy_create_webhook
Pro · Write
Create a webhook for an organization.
addigy_delete_webhook
Pro · Destructive
Delete a webhook from an organization, identified by its webhook id.
addigy_delete_webhook_schedule
Pro · Destructive
Delete the delivery schedule of a webhook, identified by its webhook id — clears the pending (queued) events waiting to be sent for that webhook.
addigy_get_webhook_event_count
Pro · Write
Returns the count of events resolved (already sent) and/or pending (waiting to be sent) for specific webhooks.
addigy_query_webhook_statuses
Free · Read-only
Get the delivery statuses of webhooks.
addigy_query_webhooks
Free · Read-only
Get the list of webhooks configured for an organization.
addigy_update_webhook
Pro · Write
Update an existing webhook, matched by its id.