A local-first desktop tool that provisions Microsoft 365 users in bulk and reconciles them against reusable role templates. See exactly what differs, fix it safely, and never lose the trail.
Compare a user against their role template, against another user, or against where they were last week. INFOtemper shows you the three-way difference: what matches, what is missing, and what should not be there. A user who matches their role is tempered. One who has drifted runs hot. The whole tool is built around that single, glance-able idea.
Look up any user and read their group memberships at a glance, each labelled by type and by the surface that owns it, Entra or Exchange.
A clean diff of what two people share and what only one of them holds. Spot the gap between a working account and a broken one in seconds.
Apply a template, clone another user, or restore a previous state. You always see the changes first, then commit.
Line up a group of people, see the roles they share, and find exactly who is missing the new group, all at once.
A template is a named bundle of groups, licences, manager, and usage location, the whole shape of a role. Apply it to a new starter at creation, or backfill it onto people who already exist. Capture a known-good user as a template in one click. Carry the same role across the tenants you manage, re-matched by name where the IDs differ.
Provisioning tools earn trust by being careful. INFOtemper is careful by construction.
The state of a user is written to a plain CSV before anything is touched, and those snapshots are never overwritten. They are your audit trail and your manual undo.
Every snapshot is a point you can return to, not just the last one. Revert a user to a template, to a moment in time, or to where they started.
Every change is shown as a selectable list first. Tick what you want, see the count, then apply. Additive by default; removals only when you say so.
An append-only log of what happened, when, to whom, and by whom, including the runs that changed nothing. Yours to keep, never quietly rewritten.
The same three steps a smith uses, applied to an identity.
A new starter, or a user who has drifted from their role. Out of shape and waiting to be worked.
Apply the template. INFOtemper backs up first, shows you the exact diff, and you commit the change.
The user now matches their role exactly, with the right access and clean data, and the whole thing is logged.
Security and Microsoft 365 groups, and the Exchange-only distribution lists and mail-enabled security groups, all handled in one place. Sign in once, as yourself, with the tenant you are working in always in view. Manage one estate, or several if you run client tenants.
There is no INFOtemper service to sign up for and no ScryMarc endpoint anywhere in the path. You register the app in your own tenant, so the identity INFOtemper signs in with is yours, not ours. Your data goes straight from your machine to Microsoft's own APIs and nowhere else. We never see a token, a user, or a group, and there is nothing of ours to lapse, revoke, or trust.
Five minutes in the Entra portal, once. Your app registration, your consent, your directory. Single tenant by default, multitenant if you manage several.
INFOtemper acts as the signed-in admin. What it can do is the intersection of the permissions you granted and the directory role you already hold. Nothing more.
Focused, local-first desktop tools that do one job well, bought once or free.
Turns Slack exports into Bates-numbered, redacted PDFs for legal, eDiscovery and SAR work.
jsonstatus.co.uk →A live DMARC report analyser that turns raw aggregate reports into something you can actually read.
More from ScryMarc →