Pro

Find who's using any workstation and their email in 2 seconds.

The reverse lookup of Get Primary Device And Email From User. Find the assigned user from a device name, with their full Active Directory context: email, UPN, department, title, manager, office, company, mobile, city and account status.

Included in the Pro tier · 14-day trial, no card

Get Primary User And Email From Device

The problem

An alert fires: "WS-12345 hasn't checked in for 90 days". You need to contact the owner. Or a security incident requires immediate identification of the assigned user.

  • SCCM WQLSMS_UserMachineRelationship reverse-query, then resolve the SamAccountName.
  • AD lookupfetch mail, department, manager — three more attribute queries.

Three minutes per device without this tool. 2 seconds with it. Bulk-process 500 devices in under a minute.

The TontonTools way

Get Primary User And Email From Device is the bidirectional twin of Get Primary Device And Email From User — same UX, opposite direction.

  • Single device modetype a device name, get UPN + mail + manager + department.
  • Bulk modepaste 500 devices, get 500 owners in one grid — ready for the comms tool.
  • Full identity contextemail, UPN, department, title, manager, office, company, mobile, city and account status returned in every row.
  • CSV exportpipe directly into mail merge or your incident-response comms workflow.

Key features

Built for high-stakes operations where forgetting a system is not an option.

  • Reverse primary-user lookup

    Type a device, get the assigned user. SCCM SMS_UserMachineRelationship resolves the primary user; Get-ADUser resolves the mail and display name.

  • Bulk mode up to 10,000 devices

    CSV, paste — even raw rows copied straight from the SCCM console Devices node — or pull from an SCCM device collection. Single-pass bulk grid with sortable columns.

  • Full AD identity in every row

    Each row now carries the complete Active Directory context: email, UPN, department, title, manager (resolved to a readable name), office, company, mobile, city and account status (Enabled/Disabled) — alongside the primary user and display name. Copy-paste ready for comms and segmentation.

  • Shared-device awareness

    Kiosks and conference-room machines surface naturally — multiple primary users or none, which is the correct signal for those scenarios.

  • Paste straight from the SCCM console

    Select devices in the SCCM Devices node, copy, and paste the rows as-is. GPUED keeps the device name from each line and ignores the trailing console columns — no Excel round-trip.

  • CSV / TXT export — 16 columns

    Result grid exports in one click with all 16 columns (device, primary user, email, display name and the full AD attribute set) — ready for mail merge, incident comms, or audit attachment.

  • Admin-governed columns

    Show or hide the optional AD columns per technician, and let IT centrally restrict which attributes are exposed via a read-only registry policy (GPO / Intune / SCCM). A disabled column is never even queried from AD — data minimisation by default.

See it in action

Real screens. No marketing renders.

  • Import a device list and resolve, for every machine, the primary user, AD email and a full Active Directory profile — department, title, manager and more. Show or hide columns from the Columns menu.
  • Paste device names — even raw rows copied straight from the SCCM console — and get every primary user, email and AD attribute in one grid.
  • Or pull straight from any SCCM device collection — search, pick, and resolve every member at once.
  • A timestamped, colour-coded log traces every WMI lookup and AD resolution — resource name to user to email, line by line.

Technical details

What runs where. What it writes to disk. What permissions it needs.

Authentication

SCCM — current user credentials (Kerberos)

Active Directory — current user credentials (Kerberos)

Systems

Microsoft Configuration Manager (SCCM / MECM)

Active Directory (on-prem)

Bulk limit

10,000 devices per operation

Who it's for

Security teams responding to alerts. Asset managers preparing decommissioning notices. L2 engineers investigating compliance violations. Anyone who needs to put a human face on a device name — fast.

Identify a device's owner instantly.

Try Get Primary User And Email From Device — included in Pro and Enterprise tiers.