Device trust

Start with access.

Bring device approval to computers outside your managed fleet. Start with Keycloak and a small pilot.

  • Your devices
  • Your policies
  • No browser extension

Outside the managed fleet

You still need to know the device.

Contractors and personal computers may sit outside your MDM. They should still prove they belong before reaching work apps.

BYODPersonal computers used for work
PartnersContractors beyond your managed fleet
KeycloakDevice checks in your existing sign-in

How it works

A practical first step.

Begin with device identity and approval, then review the fit for your organization.

Register

Install the agent and enroll a few devices.

Small pilot

Approve

Choose who can approve new computers.

Your policy

Review

Check the sign-in journal and device coverage.

Visible decisions

Automatic device repair is not part of the current sign-in capability. Discuss management requirements separately.

Getting started

We’ll work through the setup.

We help you scope a pilot and understand the operating model.

Pilot scope

  • Review your Keycloak setup
  • Enroll a small group of devices
  • Configure approval rules
  • Review results with your team

Questions

A few things to know

Does this replace MDM?

No. It adds device checks to sign-in, without providing full device management.

Can I start without Keycloak?

Keycloak is the supported integration today. Discuss your identity setup with us before starting.

Does it automatically fix device problems?

No. Do not treat device visibility as an automatic repair service.

Try TrustFlare

Start with a few devices.

Your Keycloak, your team. We’ll help you test the fit.

How should we reach you *