{
 "categories": [
  "endpoint-management",
  "enterprise"
 ],
 "deployment": "saas",
 "evidence": [
  {
   "date": "2026-09-13",
   "fact": "homepage",
   "note": "The opened homepage title is Kandji Device Management and Security | Now Iru. It states Kandji is now Iru Endpoint and markets Apple, Windows, and Android device management plus an MCP server.",
   "source": "https://www.kandji.io/",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "vendor",
   "note": "Iru docs state Kandji is now Iru and present Iru as the vendor platform. Endpoint Management is listed as a distinct product beside Identity and Compliance.",
   "source": "https://docs.iru.com/en/iru/platform-overview/iru-overview",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "name",
   "note": "The opened product page is titled Iru (formerly Kandji) and presents Endpoint as a distinct Iru product for Apple, Windows, and Android.",
   "source": "https://www.kandji.io/platform/endpoint-management",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "license",
   "note": "Iru pricing is commercial and sales-quoted by product and device or user count. Contracts are annual. A 14-day trial is offered for Endpoint Management. API access is listed among included platform capabilities.",
   "source": "https://www.kandji.io/pricing",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "deployment",
   "note": "The API uses a tenant hostname such as accuhive.api.kandji.io. That is a hosted SaaS tenant, not a customer-operated server.",
   "source": "https://docs.iru.com/en/endpoint/api/iru-api-overview",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "platforms",
   "note": "Iru documents management of macOS, iOS, iPadOS, tvOS, visionOS, Windows 11, and Android 13 and higher. The admin surface is a web application.",
   "source": "https://docs.iru.com/en/iru/requirements/device-requirements",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "modalities.api.exists",
   "note": "Iru documents tenant-level bearer tokens for the Iru Endpoint REST API and points at an API reference for devices, apps, Library items, Blueprints, tenant activity, device actions, Library uploads, and ADE tokens.",
   "source": "https://docs.iru.com/en/endpoint/api/iru-api-overview",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "modalities.api.kinds[0]",
   "note": "The Iru Endpoint Management API reference documents GET, POST, PATCH, and DELETE over HTTPS and JSON responses. US host is https://SubDomain.api.kandji.io. EU host is https://SubDomain.api.eu.kandji.io.",
   "source": "https://api-docs.kandji.io/",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "modalities.api.auth[0]",
   "note": "Iru Endpoint uses tenant-level bearer tokens created in Access > API tokens. The token is shown once. Permissions are edited per token. The OpenAPI security scheme is HTTP Bearer.",
   "source": "https://docs.iru.com/en/endpoint/api/iru-api-overview",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "modalities.api.coverage",
   "note": "The opened reference catalogs Audit Log, ADE integrations, Blueprints, Blueprint Routing, Device Actions, Device Information, Device Secrets, Library items, Prism, Settings, Tags, Threats, Users, and Vulnerabilities. That is a documented fleet and library surface, not a claim that every Web App control is exposed.",
   "source": "https://api-docs.kandji.io/",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "modalities.api.docs",
   "note": "Iru documents a published Postman collection imported from api-docs.kandji.io and states the API uses standard REST with token-based authentication.",
   "source": "https://docs.iru.com/en/endpoint/api/how-to-set-up-the-iru-endpoint-api-in-postman",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "modalities.api.coverage",
   "note": "Iru states that third-party integrations use the REST API with tokens, and that API access may need a Customer Success Manager to enable it on the tenant.",
   "source": "https://docs.iru.com/en/endpoint/integrations/overview/integrating-third-party-apps-using-the-iru-endpoint-api",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "modalities.mcp.first_party",
   "note": "Iru documents a first-party hosted MCP server. The opened contract gives the tenant URL pattern https://YOUR_TENANT.connect.iru.com/mcp-server/connector/kandji/tools and requires X-API-Key and X-MCP-Profile headers. Enable MCP must be on when the API token is created.",
   "source": "https://docs.iru.com/en/endpoint/integrations/ai-assistants/iru-mcp",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "modalities.mcp.verdict",
   "note": "The official server exposes the Iru Enterprise API as MCP tools for devices, Blueprints, Library Items, and allowed actions in Cursor, Claude Desktop, OpenAI Codex, and other MCP clients. Permissions on the token control which endpoints MCP can call.",
   "source": "https://docs.iru.com/en/endpoint/integrations/ai-assistants/iru-mcp",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "modalities.data_access.export[0]",
   "note": "The API returns structured responses in JSON.",
   "source": "https://api-docs.kandji.io/",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "modalities.data_access.export[1]",
   "note": "Iru documents hourly export of Unified Activity events to a customer S3 bucket, covering Tenant, Endpoint, Detections, Vulnerabilities, and Compliance activity.",
   "source": "https://docs.iru.com/en/endpoint/integrations/security/amazon-s3-activity-log-integration",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "modalities.data_access.import[0]",
   "note": "POST and PATCH accept JSON request bodies. A JSON parse error is a documented 400 response.",
   "source": "https://api-docs.kandji.io/",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "modalities.agent_docs.llms_txt",
   "note": "Iru publishes a documentation index at docs.iru.com/llms.txt, including Endpoint pages and OpenAPI links for iru-endpoint-openapi.json and upload-to-s3-openapi.json.",
   "source": "https://docs.iru.com/llms.txt",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "verdict.scores.api",
   "note": "The opened OpenAPI 3.0 document is titled Iru Endpoint Management API, uses Bearer auth, and lists REST paths under /api/v1 including audit, devices, blueprints, and related fleet resources. Coverage is broad and documented rather than a claim that every console control is exposed, so the path stays in the 7-8 band.",
   "source": "https://docs.iru.com/openapi/iru-endpoint-openapi.json",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "verdict.scores.mcp",
   "note": "The official hosted MCP server maps the Enterprise API to tools under the same permission model and rate limit as REST. That is a maintained official server with useful coverage, not a docs-only assistant and not a claim of unusually complete lifecycle tooling.",
   "source": "https://docs.iru.com/en/endpoint/integrations/ai-assistants/iru-mcp",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "freshness.watch[0].url",
   "note": "Opened the current Iru API overview, including bearer tokens, tenant API URL, Enable MCP, and the 10,000-request-per-hour limit.",
   "source": "https://docs.iru.com/en/endpoint/api/iru-api-overview",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "freshness.watch[1].url",
   "note": "Opened the current Iru Endpoint Management API reference, including US and EU hosts, HTTP methods, JSON responses, and Bearer Token authorization.",
   "source": "https://api-docs.kandji.io/",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "freshness.watch[2].url",
   "note": "Opened the current Iru MCP contract, including the connect.iru.com URL pattern, X-API-Key and X-MCP-Profile headers, and client setup for Cursor and Claude Desktop.",
   "source": "https://docs.iru.com/en/endpoint/integrations/ai-assistants/iru-mcp",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "freshness.watch[3].url",
   "note": "Opened the current Iru Endpoint OpenAPI document linked from docs.iru.com/llms.txt.",
   "source": "https://docs.iru.com/openapi/iru-endpoint-openapi.json",
   "tier": "declared"
  },
  {
   "date": "2026-09-13",
   "fact": "freshness.watch[4].url",
   "note": "Opened the current Iru documentation index, including Endpoint and Compliance indexes and OpenAPI spec links.",
   "source": "https://docs.iru.com/llms.txt",
   "tier": "declared"
  }
 ],
 "freshness": {
  "last_verified": "2026-09-13",
  "volatility": "medium",
  "watch": [
   {
    "type": "docs",
    "url": "https://docs.iru.com/en/endpoint/api/iru-api-overview"
   },
   {
    "type": "docs",
    "url": "https://api-docs.kandji.io/"
   },
   {
    "type": "mcp",
    "url": "https://docs.iru.com/en/endpoint/integrations/ai-assistants/iru-mcp"
   },
   {
    "type": "api",
    "url": "https://docs.iru.com/openapi/iru-endpoint-openapi.json"
   },
   {
    "type": "docs",
    "url": "https://docs.iru.com/llms.txt"
   }
  ]
 },
 "homepage": "https://www.kandji.io/",
 "id": "kandji",
 "license": "commercial",
 "modalities": {
  "agent_docs": {
   "llms_txt": true
  },
  "api": {
   "auth": [
    "bearer-token"
   ],
   "coverage": "partial",
   "docs": "https://api-docs.kandji.io/",
   "exists": true,
   "kinds": [
    "rest"
   ]
  },
  "cli": {
   "exists": "unknown"
  },
  "computer_use": {
   "issues": [],
   "viability": "unknown"
  },
  "data_access": {
   "export": [
    "json",
    "s3-activity-log"
   ],
   "import": [
    "json"
   ]
  },
  "extensibility": {
   "scripting": [],
   "webhooks": "unknown"
  },
  "integrations": {
   "make": "unknown",
   "n8n": "unknown",
   "power_automate": "unknown",
   "zapier": "unknown"
  },
  "mcp": {
   "first_party": true,
   "third_party": [],
   "verdict": "official"
  },
  "rpa": {
   "drivability": "unknown",
   "notes": "No repeatable UI probe was run. The Iru Endpoint Management REST API and the hosted Iru MCP server cover fleet read and device actions without browser control of the Web App. Iru AI in the console is not MCP. Iru Workforce Identity and Compliance Automation are outside this record.\n",
   "ui_stack": [
    "web-dom"
   ],
   "vendor_support": []
  },
  "sdk": {
   "exists": "unknown",
   "languages": [],
   "official": "unknown"
  }
 },
 "name": "Iru Endpoint Management",
 "platforms": [
  "macos",
  "ios",
  "windows",
  "android",
  "web"
 ],
 "related": {
  "alternatives": [
   "jamf",
   "microsoft-intune"
  ],
  "our_products": []
 },
 "schema_version": 1,
 "score_version": 1,
 "status": "active",
 "vendor": "Iru",
 "verdict": {
  "best_path": "api",
  "scores": {
   "api": 8,
   "cli": null,
   "computer_use": null,
   "integrations": null,
   "mcp": 7,
   "overall": 8,
   "rpa": null
  },
  "summary": "Iru Endpoint Management, the product formerly branded Kandji, is automatable today through the tenant REST API and a first-party hosted MCP server. Keep the slug kandji. The opened API overview and the public OpenAPI document establish a JSON REST surface at https://{subdomain}.api.kandji.io and https://{subdomain}.api.eu.kandji.io, with GET, POST, PATCH, and DELETE, Bearer-token authentication, and a 10,000-request-per-hour tenant rate limit. Documented resources include devices and device actions, Blueprints, Library items, ADE tokens, Prism, users, tags, threats, vulnerabilities, settings, and audit events. Tokens are created in Access; permissions are scoped per token. API access may need a Customer Success Manager to enable it on the tenant. The opened Iru MCP guide is a real server contract, not homepage marketing: the tenant URL is https://YOUR_TENANT.connect.iru.com/mcp-server/connector/kandji/tools, authenticated with X-API-Key and X-MCP-Profile, and it exposes the same Enterprise API as MCP tools for Cursor, Claude Desktop, and Codex. MCP calls share the REST rate limit. This record is not Jamf and not Microsoft Intune. Connector catalogs were not opened. An official tenant SDK or tenant CLI was not established. Computer-use viability is unassessed. API scores 8 and is the best path. MCP scores 7 because the official server is useful and permission-scoped rather than unusually complete.\n"
 }
}