Provider status
The force-install policies below work today on any of these platforms, whether or not the console-side roster adapter has shipped. The adapter affects whether PromptShields can read your device inventory back — it does not affect your ability to push the client out.
Force-installing the browser extension
You will need the PromptShields extension ID from your store listing. It is referred to as<EXTENSION_ID> throughout.
- Intune
- Jamf Pro
- Kandji
- JumpCloud
Configuration Profile → Settings catalog → For Microsoft Edge, use the equivalent
Google Chrome > Extensions > Configure the list of force-installed apps and extensionsAdd one entry:Microsoft Edge > Extensions > Control which extensions are installed silently setting with the Edge Add-ons update URL.Deploying the desktop agents
The desktop agents are ordinary managed applications — deploy them the way you deploy any other line-of-business app.- Windows
- macOS
Package the MSIX and deploy through Intune as a Line-of-business app or a Windows app (Win32).Two prerequisites to verify in the same deployment:
- The WebView2 Runtime must be present, or sign-in cannot complete.
- The
prompt-shields://protocol handler must be allowed to register.
Verifying coverage
A push that reports success is not the same as a client that is working. Reconcile three lists:1
MDM says the policy applied
Your MDM’s compliance report — the device received the profile.
2
The client checked in
The console’s deployment view shows agents online, their version, and which platforms the rollout touched.
3
Investigate the gap
Devices in list one but not list two are your real work: machines that are offline, offboarded, asleep, or where the user never completed sign-in or the permission grant.
Rollout sequence that works
- IT department only. Manual install. Shake out sign-in and endpoint configuration.
- One friendly department. Still manual or optional install. Watch the false-positive rate in Guideline mode.
- Force-install the browser extension fleet-wide. Policies stay in Guideline — observing, changing nothing.
- Deploy the desktop agents where native-app coverage matters.
- Promote policies to Strict once the data supports it. See Policies.