1. Overview: For the Enterprise Administrator
Fulcrum for Intune is our dedicated mobile application for organizations that leverage Microsoft Intune to manage devices and enforce data protection policies.
While our standard mobile app can be deployed via Intune, Fulcrum for Intune is required to fully support:
App Protection Policies: Enforce granular security controls, such as requiring a PIN to open the app, restricting copy/paste to unmanaged applications, and blocking app use on non-compliant devices.
Conditional Access: Ensure that only users on compliant, managed devices can access your organization's Fulcrum data.
This application ensures that all field data collection and management activities within Fulcrum adhere to your corporate security and compliance standards.
Fulcrum for Intune is currently only available on Android. The iOS Fulcrum for Intune app is in development. Email product@fulcrumapp.com with any questions.
Prerequisites
A Fulcrum Enterprise plan with Single Sign-On (SSO) configured.
A Microsoft Intune subscription.
Users must be licensed for Intune.
The 'Fulcrum for Intune' app must be added to your Intune app catalog.
High-Level Deployment Steps
Add the App: In the Intune admin center, add the "Fulcrum for Intune" app (with the briefcase icon) to your app library from the managed Google Play Store.
Create an App Protection Policy or Edit an Existing One: Define your desired security controls (e.g., "Require PIN for access," "Block screen capture") and apply this policy to the Fulcrum for Intune app.
Note: For using on non-enrolled devices using App Protection Policies, you will need to enable API permissions in Entra ID.
Add as a Custom App: Select custom apps and add the app with this package name
com.spatialnetworks.fulcrum.intunems
.
Assign the App: Assign the app and protection policy to your target user or device groups.
2. End-User Guide: Installation & Sign-In
How to Install the App
Your company's IT administrator will make the app available to you. Based on your organization's setup, this will happen in one of two ways:
Automatic Installation: The app may be automatically installed on your device.
Company Portal / Work Play Store: You may need to install the app manually from your company's internal app store (often called "Company Portal" or the "Work" tab in the Google Play Store).
Please look for the Fulcrum for Intune app, which has a small briefcase icon on it. If you cannot find it, please contact your IT department.
Signing In for the First Time
Open the Fulcrum for Intune app.
Tap the Secure Sign In button.
You will be prompted to sign in to your Microsoft account. Select or enter your corporate credentials.
You will then be taken to the Fulcrum login screen. Your SSO domain may already be filled in. If it is not, please enter your company's Fulcrum SSO domain (this is the same one you use on the web) and tap Sign In.
3. Frequently Asked Questions (FAQ) & Troubleshooting
Q: Why are there two Fulcrum apps? Which one do I use?
A: The standard "Fulcrum" app is for general use. The "Fulcrum for Intune" app (with the briefcase) is specifically for companies that require enhanced Microsoft security. Your IT administrator will tell you which one you must use. If your company uses Intune, the regular app will likely be blocked.
Q: I'm getting an error about "Conditional Access" or my device being "non-compliant."
A: This is a security message from your company. It means your device does not meet your organization's security requirements (e.g., the OS is outdated, the device is jailbroken, or a PIN is not set). You must contact your internal IT help desk for assistance.
Q: The app is asking for my "SSO Domain." What is that?
A: This is your company's unique identifier for logging into Fulcrum. It should be the same one you use to log in to the Fulcrum website. If it's not pre-filled, please contact your IT administrator or manager to get the correct domain.