1. Self-Service for Enterprise Apps & Scripts

We’re giving more control to your Windows users. You can now publish enterprise apps and scripts to a self-service catalog instead of pushing them right away.

Apps in the catalog show up in the Scalefusion MDM app, where users can install or update them when needed. Scripts can also be made available for users to run on demand, while still respecting the run options set by IT.

  1. Enhancements to OneIdP

  • Sub-Domain Federation Support: You can now set up Microsoft Entra SSO (SAML) for sub-domains (e.g., retail.onplex.com). Since sub-domains must be promoted and managed independently, their SSO settings won’t inherit from the parent domain. This means if you later remove OneIdP, you’ll need to configure another IdP directly for the sub-domain.

  • Enhanced Metadata Support: The OneIdP metadata file now includes the SLO URL, ensuring smoother SSO configurations.

  1. Device Attestation

Introducing periodic device attestation checks across Android, iOS, iPadOS, and macOS!

Ensure only trusted and uncompromised devices stay compliant, Get clearer visibility and automated enforcement for device integrity, reducing risk without manual intervention.

Device attestation is backed by Google Play Protect (Android) and Apple Managed Device Attestation (iOS 16+, iPadOS 16.1+, macOS 14+), with results available in the Devices View and Device Inventory Report.

  • View real-time status: Track devices as Verified (secure), Failed (compromised), or N/A (not supported).

  • Act instantly: Build rules for device groups and user groups to auto-group devices by attestation status and trigger remediation

  1. Fresh UI for Groups

The User and Device Groups interface has been refreshed for a cleaner, more intuitive admin experience.