All Templates
Browse the complete library of policy and user templates for rapid deployment across tenants. Templates capture best practices for security, compliance, and device management configurations that can be deployed consistently.
Note: Templates are stored centrally and can be deployed to any managed tenant. Customize parameters during deployment while maintaining core configuration standards.
Policy Template Categories
Device Compliance
Compliance policies that define device health requirements. Enforce encryption, OS versions, and security settings.
- Windows compliance baseline
- macOS compliance baseline
- iOS/iPadOS requirements
- Android Enterprise rules
Device Configuration
Configuration profiles for device settings, features, and restrictions across platforms.
- Windows device restrictions
- Wi-Fi and VPN profiles
- Email configuration
- Certificate deployment
Conditional Access
Conditional Access policy templates for identity protection and access control.
- Require MFA for all users
- Block legacy authentication
- Require compliant devices
- Location-based access
App Protection
MAM policies protecting corporate data in mobile apps on managed and unmanaged devices.
- iOS app protection
- Android app protection
- Data transfer restrictions
- PIN and encryption
Security Baselines
Microsoft security baseline configurations for Windows, Edge, and Microsoft 365 Apps.
- Windows security baseline
- Microsoft Edge baseline
- Defender for Endpoint
- Office security settings
Update Policies
Windows Update for Business configurations for quality and feature update management.
- Quality update rings
- Feature update policies
- Driver update profiles
- Expedited updates
User Template Library
Standard Employee
Full Microsoft 365 E3 license with standard group memberships. Suitable for most information workers.
- Licenses: Microsoft 365 E3
- Groups: All Employees, M365 Users
- Settings: MFA required, Password change
Executive User
Microsoft 365 E5 with enhanced security, Power BI Pro, and executive communication groups.
- Licenses: Microsoft 365 E5, Power BI Pro
- Groups: All Employees, Executives, VIP
- Settings: MFA required, FIDO2 eligible
Frontline Worker
Microsoft 365 F3 license optimized for shift workers with limited app access and mobile-first experience.
- Licenses: Microsoft 365 F3
- Groups: Frontline Workers, Shifts Users
- Settings: MFA required, Shared device
External Contractor
Limited access configuration with business basic license and restricted group memberships.
- Licenses: Microsoft 365 Business Basic
- Groups: External Users, Contractors
- Settings: MFA required, Limited apps
API Reference
GET /api/automation/policy-templates— List all policy templatesGET /api/automation/user-templates— List all user templatesPOST /api/automation/policy-templates— Create new policy templatePOST /api/automation/user-templates— Create new user template