The Sastrify Browser Extension is a lightweight browser add-on designed to enhance visibility into SaaS usage across your organization. It seamlessly supports the discovery of shadow IT and provides actionable insights—such as SaaS utilization trends and usage patterns—directly within your Sastrify platform. The extension operates only when users interact with SaaS applications using their company email, ensuring relevance and data accuracy while respecting user privacy.


Key features

  • Shadow IT Discovery
    Automatically identifies SaaS tools accessed via corporate email accounts, surfacing unapproved or unmanaged software.
  • Detailed Usage Analysis

    Tracks usage patterns—including login frequency and activity periods—to support optimized licensing and informed tool management.

  • Privacy-First Approach

    Collects only essential metadata (e.g., SaaS URLs, login/logout timestamps, frequency of access), excluding personal browsing activity to comply with privacy standards.


All collected data is securely transmitted to your Sastrify platform, where Sastrify admins can:

  • View detailed usage data under the Usage tab of each tool.

  • Discover and manage new tools through the Shadow IT Radar feature.


Sastrify adheres to strict data privacy protocols, ensuring that only SaaS-specific activity (e.g., login events and usage timestamps) is monitored—never personal or non-business applications.


IN THIS ARTICLE


How to Install the Sastrify Browser Extension via Microsoft Intune

  1. Log into your Sastrify platform and go to Integrations > Discovery.
  2. Under "Browser Extension Integrations", find the Microsoft Edge connection card and click "Enable".


  3. If you haven’t connected an HRIS integration yet, you’ll be prompted to set one up.
     If an HRIS is already connected, deployment options will appear immediately.
  4. Choose Admin Install Instructions, then click Next.


Using the steps below, you can deploy the Sastrify browser extension to all devices or to a specific group using Microsoft Intune for Microsoft Edge browsers.


Step 1: Create an Azure AD Group (Optional)

Skip this step if you plan to deploy the extension to all devices.


  1. Navigate to Microsoft Intune > Groups > New Group.

  2. Choose "Security" as the group type.

  3. Enter a meaningful group name (e.g., Sastrify Shadow IT).

  4. Set "Membership type" to Assigned.

  5. After creating the group, go to the "Members" section to add devices (e.g., using device serial numbers).



Step 2: Create the Configuration Profile

  1. Go to Intune > Devices > Windows > Configuration profiles.

  2. Click "Create profile".

  3. Use the following settings:

    • Platform: Windows 10 and later

    • Profile type: Settings catalog

  4. Click "Add settings", then search for Microsoft Edge.

  5. Browse for "Microsoft Edge\Extensions".
  6. Enable "Control which extensions are installed silently".
  7. Add the following extension ID: mkeifknkbhmlkdbgjnkedncjhhfllhih




Step 3: Assign the Policy

  1. Proceed to the Assignments step of the profile wizard.

  2. Choose:

    • The group you created in Step 1, or

    • All devices, if you want universal deployment.

  3. Complete the wizard to deploy the policy.


This configuration profile will automatically install the Sastrify browser extension in the background on Microsoft Edge for the targeted devices.


How to Uninstall the Sastrify Browser Extension

  1. Open Microsoft Endpoint Manager by going to the Intune Admin Center.
  2. Navigate to Apps or Devices > Configuration Profiles, and locate the profile used to deploy the Sastrify extension.
  3. Open the profile and go to the "Assignments" section.
  4. Remove the user or device group that was assigned the extension.
  5. Save and confirm. Changes will propagate automatically, and Intune will trigger the uninstall on the next policy sync.


Frequently Asked Questions


Please refer to the Browser Extension FAQ page for a complete list of frequently asked questions.