Kandji AI Integration
Connect Kandji to BeforeQuery for grounded AI answers and agent actions across Device / MDM.
About Kandji
Kandji is one of the Device / MDM platforms BeforeQuery connects to. Once linked, the platform's data becomes a first-class source for grounded AI answers and a target for policy-gated agent actions — the same identity, approval, and audit-log guarantees every other integration ships with.
How to connect Kandji
- Step 01
In the BeforeQuery dashboard, go to Integrations → Device / MDM and select Kandji.
- Step 02
Sign in to Kandji with an account that has permissions to grant BeforeQuery the Device / MDM scopes required.
- Step 03
Confirm the connection. Kandji is now available as a source and action target for every playbook in your workspace.
Related integrations
Addigy is one of BeforeQuery's Device / MDM integrations. Connect it once and every agent in your workspace can read, reason over, and act on Addigy data with your policies + audit trail.
Apple Business Manager is one of BeforeQuery's Device / MDM integrations. Connect it once and every agent in your workspace can read, reason over, and act on Apple Business Manager data with your policies + audit trail.
Fleet is one of BeforeQuery's Device / MDM integrations. Connect it once and every agent in your workspace can read, reason over, and act on Fleet data with your policies + audit trail.
What the agent does with your Kandji connection
- 01
Read the Kandji device fleet — hardware, OS, compliance state, assigned user — into the Context Graph.
- 02
Push profiles, remote-lock or wipe devices, and enforce compliance rules via Kandji write operations.
- 03
Answer employee device questions ("what OS am I on?") + IT questions ("who has an out-of-compliance Mac?").
- 04
Coordinate device lifecycle: order, enroll, refresh, wipe, and return — with the right approvals at each step.
What teams actually do with the Kandji integration
Lost-device remote lock
Employee reports laptop lost in Slack → BeforeQuery verifies identity, remote-locks the Kandji-enrolled device, invalidates SSO sessions, notifies security. Sub-minute response; full audit trail.
Compliance drift auto-remediation
Nightly, BeforeQuery pulls the Kandji compliance report. Devices in violation (missing OS patch, disabled encryption, expired MDM check-in) get an auto-remediation attempt; user is notified with next steps.
New-hire zero-touch enrollment
HR fires new-hire event → BeforeQuery orders laptop, assigns to user in Kandji, pushes the role-appropriate profile, and pre-configures apps + printers. Device arrives ready; first boot enrolls automatically.
Answer questions grounded in Kandji
Employees and customers ask Kandji-related questions in Slack, Teams, or the widget — BeforeQuery answers with the exact Kandji record shown alongside the response. No context switching, no "log into Device / MDM to check" round-trips.
Kandji — Frequently Asked Questions
Common questions about connecting BeforeQuery to Kandji.
Ready to connect Kandji?
Start free. No credit card required. Connect your first integration in under 5 minutes.