Managing the Microsoft Intune Connection
Manage your Microsoft Intune integration in AssetLoom. Learn how to configure connection settings, sync scope, write-back, and integration management options.
The Connection section holds the settings established when Microsoft Intune was first connected: authentication, what gets synced, and the option to disconnect or delete synced data.
To access it, from the Microsoft Intune integration details page, navigate to the Connection tab.

Authentication
This section lets you review and configure how AssetLoom connects to your Microsoft Intune instance.

- OAuth 2.0 Token Endpoint (v2): Displays the Microsoft identity platform endpoint used by AssetLoom to authenticate with Microsoft Intune.
- Credentials configured: Displays the Client ID and Client Secret currently stored for the connection, along with when they were last updated. Click Rotate to replace the existing Client Secret with a new one.
- Test Connection: Click Test Connection to verify whether AssetLoom can authenticate and communicate with Microsoft Intune using the configured credentials.
Sync Scope
Use Sync Scope to choose which types of devices AssetLoom imports and keeps updated from Microsoft Intune. Changes to these settings apply to future syncs and do not delete assets that have already been synced.

- Automatic sync: Controls whether AssetLoom automatically runs synchronization at the configured frequency. When enabled, AssetLoom periodically retrieves the latest device information from Microsoft Intune. When disabled, you can manually start a synchronization by clicking Sync Now.
- Frequency: Defines how often AssetLoom automatically synchronizes data from Microsoft Intune.
- Fallback Category: Defines the default AssetLoom category assigned to devices when AssetLoom cannot find a matching category during synchronization.
In plain terms, the Fallback Category is a safety net for categorization.
When AssetLoom syncs a device from Microsoft Intune, it tries to match that device to one of your existing AssetLoom categories. If it can’t find a match, instead of leaving the device uncategorized, AssetLoom puts it into whichever category you’ve designated as the fallback.
Write-back
Write-back allows supported changes made to synced asset records in AssetLoom to be sent back to the corresponding device records in Microsoft Intune. This creates a two-way flow of information instead of only importing device data from Microsoft Intune into AssetLoom.
Write-back is not currently available and will be introduced in Phase 2 of the Microsoft Intune integration.
Danger Zone
Use the Danger Zone to stop the Microsoft Intune integration or permanently remove the assets imported through it. Review the impact of each action carefully before proceeding.

Disconnect Integration
Disconnecting stops AssetLoom from communicating with the connected Microsoft Intune instance.
To disconnect:
- Click Disconnect.
- Review the confirmation message.
- Confirm the action.
After the integration is disconnected:
- Future manual, automatic, and webhook-based syncs stop.
- Existing assets previously synced from Microsoft Intune remain in AssetLoom.
- The Microsoft Intune integration must be connected again before syncing can resume.
Delete Synced Data
Use Delete Synced Data to permanently remove assets imported through this Microsoft Intune integration.
To delete the synced assets:
- Click Delete Assets.
- Review the assets and data that will be affected.
- Confirm the deletion.
This action is irreversible. All assets sourced from this Microsoft integration will be permanently removed from AssetLoom and cannot be restored.