Devices

A device is an enrolled Mac or Windows computer that Harriet configures and monitors. This page explains what enrollment gives you, how to read the Devices list, and the three ways a machine gets enrolled.

What an enrolled device is

When a computer enrolls, Harriet creates a device record with its own credentials and starts managing the AI configuration on that machine. The device checks in every five minutes, receives the configuration its profile and assignments define, applies it locally, and reports back. See How sync works for the full loop.

A device is usually linked to a person, so Harriet knows whose skills to provision and whose OAuth connections to use. Devices that are not linked yet show up in the needs-attention banner, and you fix them by linking with a code.

The Devices list

Open Devices in the Endpoint AI console to see every enrolled machine. The table has five columns: Device (hostname or device ID), Status, OS (type and version), User (the linked person, with a Link user shortcut when nobody is linked), and Last seen.

Two buttons sit above the table: Connect desktop app enrolls the computer you are sitting at, and Send invite emails an enrollment invite to a colleague. Both are covered in Enrolling a device.

When any device is unlinked or has not reported for a while, a warning banner appears above the list: "Needs attention: N devices unlinked or haven't reported recently." Click into a device to see which problem applies and what to do about it.

The Devices list showing status, OS, user, and last check-in
The Devices list: per-device status, OS, linked user, and last check-in.

Device statuses

StatusMeaning
ActiveThe device has checked in recently and is receiving configuration normally.
InactiveThe device has not reported for more than seven days (or has never checked in). Confirm the agent is running on the machine, or see Device not syncing.
BlockedThe device is still enrolled, but Harriet refuses its traffic: MCP proxy calls and LLM proxy requests from a blocked device fail authorization.
Pending wipeA full removal is scheduled. On its next check-in the agent removes all Harriet-managed configuration from the machine. See Removing and wiping devices.
WipedThe machine confirmed the wipe. The device disappears from the list, but its detail page stays available as a record of the removal (shown as Removed).

Three ways a device gets enrolled

💡

Employees can see their own devices and sync status on My AI → Your devices, without touching the admin console.