Beta — limited access

Microsoft Intune Graph Visualization
for MSPs and IT Admins

GraphLens connects to your Azure tenant via the Microsoft Graph API and maps every device, compliance policy, configuration profile, AAD group and app as a live interactive graph — read-only, with no data leaving your tenant. Built for Managed Service Providers and enterprise IT teams.

Request beta access
graphlens.nl/intune/graph
All Users IT Dept Sales Executives Finance Dev Team Teams Defender Compliant Win11 BitLocker 42 dev. 14 dev.

Everything your Intune admin needs, in one graph

Policy-to-group relationships at a glance

See which compliance policy or configuration profile applies to which AAD group — including policy sets and Settings Catalog policies.

Device compliance overview

Filter devices by compliance status, OS and category. Instantly spot non-compliant devices across your Intune environment.

Connect in 2 minutes

GraphLens automatically creates an app registration via Device Code Flow. No manual Azure configuration needed.

Your data never leaves your tenant

GraphLens is read-only — nothing is written, modified or stored outside your own Azure environment. All data is fetched live via the Microsoft Graph API with read-only permissions. GraphLens stores no Intune data on its own servers.

Frequently asked questions

What is GraphLens?

+

GraphLens is a read-only Microsoft Intune visualisation tool that maps policies, groups, apps and devices as an interactive graph — live from your Azure tenant. It reads data via the Microsoft Graph API with read-only permissions and stores nothing on its own servers. Built for Managed Service Providers (MSPs) and enterprise IT administrators.

How does GraphLens connect to Microsoft Intune?

+

GraphLens uses Azure Device Code Flow to automatically create an app registration inside your own Azure tenant. You sign in once with a Global Administrator account to grant consent — no manual configuration needed. Alternatively, you can enter an existing app registration's Tenant ID, Client ID and Client Secret manually.

Is GraphLens safe to use with customer tenants?

+

Yes. GraphLens is strictly read-only — it cannot write, modify or delete anything in your Azure environment. For MSPs, each customer's data is isolated within their own tenant credentials. GraphLens never mixes data between tenants and stores no Intune data on its own infrastructure.

Does GraphLens show non-compliant devices?

+

Yes. The device compliance view shows all managed Intune devices with their current compliance state — compliant, non-compliant, grace period, error, or unknown. You can filter by status, operating system and device category to quickly identify problem areas across your environment.

What Intune objects does GraphLens visualize?

+

GraphLens maps AAD groups, compliance policies, configuration profiles, Settings Catalog policies, Administrative Templates (ADMX), app assignments, policy sets and device categories — and shows all assignments and relationships between them as a navigable node-edge graph.

What does GraphLens show that the Intune portal does not?

+

The Microsoft Intune portal shows policies and groups as separate lists. GraphLens makes the relationships between them visible in one interactive view. It also surfaces orphaned objects — policies or apps that exist in your tenant but are not assigned to any group — which are invisible in the standard portal.

Request beta access

We'll send you an invitation link as soon as there's space. No spam, no obligations.

beta@graphlens.nl

Or send an email to beta@graphlens.nl