Guides and field references for every ElevateIQ capability, from elevation events and rules to USB control, allowlisting and technician sessions.
What endpoint privilege management is, the pieces of ElevateIQ, and how a request flows from a user's desktop to an approval.
Enforce, Audit and Learning: what each policy mode does, how to roll out safely, and the status colors used across the console.
The full field reference for an elevation request: binary identity, signature status, launch context, statuses and decisions.
Match fields, actions, scoping, schedules and priority: how the unified rule engine decides what happens before anyone is asked.
The unified 0 to 100 score and its five bands, what feeds it, and how to read it when deciding a request.
Reputation lookups, AI binary analysis and the machine-learning scorer that learns from your own approval history.
Device allow and deny rules, the built-in auto-allow tiers, PII attestation, and learning versus enforce rollout.
Time-boxed access to protected OS settings classes: network, display, devices, printers, power and time.
Default-deny execution control on macOS: audit-first rollout, execution events, and promoting observed binaries to allow rules.
Short, fully-attributed maintenance sessions for MSP technicians, with hard time caps and per-elevation audit.
What works with zero setup, when Full Disk Access is needed, and the managed versus unmanaged deployment paths for a Mac fleet.
A feature-by-feature comparison of the agent on each platform: what is identical, what differs, and why.