Microsoft Intune manages devices, apps, and compliance baselines in Entra-joined Windows estates.
Trustholm is not device MDM. We add signed PowerShell policy, push/pull file orchestration, complex install pipelines, and exportable script audit across your MSP customers.
Two layers, one endpoint
Keep Intune per customer tenant for enrollment, compliance profiles, and commodity app deployment. Add Trustholm at the MSP tenant when buyers ask who approved a script, whether it was signed, which machines ran it, and whether you can export that history for assessors.
Push what you need. Run. Pull proof back.
Trustholm pushes files from your tenant library to endpoints before a script runs, and pulls artifacts back afterward - ad-hoc, in bulk from the agent catalog, or as part of a published script pipeline in the PowerShell IDE. Intune often separates content prep, Win32 packaging, and log retrieval into different workflows; Trustholm treats file transfer as part of governed automation orchestration.
Win32 for simple apps. Governed PowerShell for everything else.
When the install is conditional PowerShell - not a silent MSI - Trustholm stages files, runs parameterized scripts on demand or on a schedule, records full stdout and exit codes in the execution queue, and optionally pulls logs or evidence back to tenant storage. The whole run can be signed, approved, versioned, and exportable for assessors.
Intune Win32 remains the right tool for packaged apps; Trustholm governs the long tail.
Winget beyond the Intune storefront
Trustholm browses the full public winget catalog, lets you add packages to a tenant-approved catalog, and deploys via scheduled policies, inventory snapshots, or break-glass push. Intune's app experience is increasingly curated; Trustholm uses winget's open catalog with tenant approval and audit - not an ungoverned free-for-all.
How to read this page
Keep Intune per customer tenant. Add Trustholm when script evidence, file orchestration, or complex PowerShell governance is the recurring questionnaire gap.