User Risk: Adding Apps Manually
Overview
Apps normally appear in User Risk only after they've been detected through your directory integration or the browser extension. However, you can also add an app before anyone in your organization has used it, allowing you to proactively set its policy first.
You can only add apps UpGuard already tracks. If an app doesn't appear in search, it can't be added this way. To learn more, see What you can search for.
⛔ An app you add can't be removed afterwards.
Add an app
- Click the User Risk icon from UpGuard's left-hand navigation.
- Click Applications under Inventory.
- Click + Add application in the page header, above the table.
- In the search field, type an app's name or domain. Results appear as you type.
- Click a result to select it. Repeat for any other apps you want to add — run as many searches as you need, your selections are kept.
- Click Set usage policy.
- Select the usage policy to apply: Approve, Tolerate, Nudge, or Block. Your selection will apply to every app in the batch.
- Click Add applications.
🎵 The policy applies immediately, including the first time anyone uses the app.
What an added app looks like
An app you add behaves like any other app in your inventory. On the Applications list:
|
Column |
What you'll see |
|
Source |
Manual. Detected apps read OAuth, Browser, or both, so this is how you tell an added app from a detected one. |
|
Users |
0, until someone in your organization uses the app. |
|
Usage policy |
The policy you chose while adding it (not the organization default). |
|
Security rating |
The rating UpGuard already holds for the app. N/A means no rating is available for it. |
|
Monitored vendor |
Empty. Adding an app doesn't start monitoring the vendor behind it in Vendor Risk. |
|
Shadow AI |
Ticked, if it's an app UpGuard classifies as Shadow AI. Apps you add are included when you filter the list for Shadow AI. |
An app you add is recorded on its Timeline with two entries: one for the app being added, and one for the usage policy being set. See User Risk: App Timeline.
Apps stay in User Risk even with no users, so the policy you set holds and applies to anyone who uses the app later.