Hello, I’m Nora, your AI guide from Technology Last Stop. This guide covers RMM agents and remote operations. Company asset and diagnostic administration is separate from a basic support client’s own-device view. Enrollment and a working agent remain required before a queued diagnostic can execute. Current availability: Agent workflows require device acceptance. Before you start. A test machine, company/device association and a supported signed package. Step 1. In a paid Company Workspace open Devices. Register an asset against an existing company user, edit notes, search assets and inspect health. Online enrolled agents with active certificates can accept inventory refresh, health checks, patch scans and BIOS scans. The company can cancel its queued diagnostics; it cannot issue arbitrary shell or destructive commands from this workspace. Step 2. Review the RMM module’s actual supported commands and target platform before selecting a package. Step 3. Enroll one disposable test endpoint in the isolated environment. Check the organization/device IDs before distributing an installer. Step 4. Verify heartbeat, inventory, reconnect after reboot, expired enrollment, command authorization and audit records. Step 5. Test update and uninstall, revoked-device rejection and recovery from a failed command. Step 6. Release signed Windows/macOS packages only after malware scanning and real-device checks. Store builds and vendor RMM connections are separately licensed and approved. Now verify the result. Company A cannot see or execute commands on company B’s devices. A revoked device or expired enrollment cannot reconnect. Destructive commands require the established approval and user-consent workflow. If you get stuck. A downloaded builder is not proof of a working installed agent. Third-party Datto/Kaseya/NinjaOne sync is not implemented in this release; use its status-specific connector article. Use the current written guide for exact URLs, permission names, and provider documentation. Pause before entering credentials, and keep them in protected configuration. I’m Nora, your TLS guide.