Pro

Detect and clean device duplicates across SCCM, Intune and Entra ID.

The #1 silent cause of failed deployments. Find duplicates by name, serial number, or hardware ID. Clean them in bulk with one click — and keep the right one.

Included in the Pro tier · 14-day trial, no card

Duplicate Device Management

The problem

Duplicates are everywhere in an enterprise estate. A machine gets rebuilt and SCCM keeps the old record. A user reinstalls Windows and Entra ID registers a new device while the old one stays. A motherboard swap and Intune sees a brand new device.

  • Compliance pollutionduplicates corrupt your compliance reports with phantom denominators.
  • Double M365 licensingeach duplicate Entra ID record can consume a separate license.
  • Silent deployment failurespolicies push to the wrong record. The "why didn't this user get the policy?" ticket has a name.

Most enterprise estates carry 5-15% duplicate device pollution. Most teams have no visibility into it.

The TontonTools way

Duplicate Device Management finds, scores and lets you clean duplicates safely — across all three systems in one workflow.

  • Five detection algorithmsexact name, serial number, hardware hash, MAC address, fuzzy name (Levenshtein) — graded by confidence.
  • Side-by-side comparison12 attributes per record, color-coded by recency. Decide which copy to keep in one glance.
  • Group-toggle bulk actionflip an entire duplicate group from KEEP to DELETE in one click.
  • Atomic cleanupdeletes from SCCM, Intune and Entra ID in one operation with full audit + JSON snapshot.

Key features

Built for high-stakes operations where forgetting a system is not an option.

  • Five detection algorithms

    Exact name, serial number, hardware hash, MAC address, and fuzzy name (Levenshtein). Each match graded by confidence so exact duplicates auto-flag while fuzzy matches require confirmation.

  • Side-by-side comparison

    12 attributes per record displayed in parallel, color-coded by recency. Last seen, OS version, compliance state, owner — instant decision support.

  • Cross-system grid

    SCCM + Intune + Entra ID in a single scrollable grid. No more reconciling three exports by hand.

  • Group-toggle bulk action

    Flip every KEEP row of a duplicate group to DELETE in one click. Designed for confident operators on high-confidence matches.

  • Dry-Run mode

    Preview the full deletion plan with per-record outcomes before any commit. Use it as a four-eyes review artifact.

  • JSON + PS1 rollback

    Every deletion captures a JSON snapshot and a PowerShell reconstruction script in C:\TEMP\DDM_Snapshots\. Recover AD/SCCM records; Entra registration cannot be replayed without the device.

See it in action

Real screens. No marketing renders.

  • Detect duplicate registrations across Entra ID and Intune — each row flagged KEEP or DELETE with the reason.
  • Filter by source, OS and duplicate count; KEEP always lands on the most recent, managed, compliant device.
  • Double-click any device for full details: Object ID, Device ID, dates and every property, copyable.
  • Click KEEP to flip an entire duplicate group at once — built for the groups that run into the hundreds.

Technical details

What runs where. What it writes to disk. What permissions it needs.

Authentication

SCCM — current user credentials (Kerberos)

Microsoft Graph — Client Secret or Certificate (JWT Client Assertion)

Systems

Microsoft Configuration Manager (SCCM / MECM)

Microsoft Intune

Microsoft Entra ID

Audit log

CMTrace-compatible — C:\TEMP\DDM_*.log

Rollback snapshots

C:\TEMP\DDM_Snapshots\<timestamp>\ — JSON state + PowerShell reconstruction script

Scan throughput

~30,000 devices in 4 minutes (Graph throttling dominates)

Who it's for

Modern Workplace teams managing 500+ devices in a hybrid SCCM + Intune environment. Anyone whose Intune compliance report mysteriously shows 95% green when you know it should be 99%.

Get 5–10 points back on your compliance report — this quarter.

Try Duplicate Device Management — included in Pro and Enterprise tiers.