Integrations overview
What ServiceChanger connects to: Microsoft Entra ID through Graph and on-prem Active Directory through a runbook and Entra Connect.
Microsoft only
ServiceChanger works with Microsoft identity: Entra ID in the cloud and Active Directory on-prem. There is no connection to other identity providers and no separate data silo. ServiceChanger writes to your own Entra and AD, so you keep control and can stop just as easily.
The two paths
| Target | How ServiceChanger writes | Authentication |
|---|---|---|
| Entra ID (cloud) | Directly through Microsoft Graph | OAuth2 with admin consent |
| Active Directory (on-prem) | PowerShell runbook on a hybrid worker, writes back through Entra Connect | Runbook agent with an AD service account |
What ServiceChanger reads and writes
ServiceChanger reads users, groups, memberships, license pools, and sign-in activity. It writes group memberships according to your rules. It does not write user attributes, passwords, policies, or license assignments.
What is not there yet
A connection to Intune for asset automation is on the roadmap and not available yet. We do already track Intune license usage in the License module.