Find the accounts your MFA is not protecting
Every Monday, WebRun signs into the Duo Admin Panel, lists users with no enrolled authentication device, accounts sitting in a bypass state, and users who have not authenticated in months, writes the full register into a Notion page, and opens a Trello card for each account that needs a decision.
- No credit card
- Under $0.01 per run
- Cancel anytime
How do I find users who are not properly covered by MFA?
WebRun signs into the Duo Admin Panel every Monday and lists users with no enrolled device, accounts sitting in a bypass state, and users dormant for 90 days. It writes the register into Notion beside previous weeks and opens a Trello card for every account that needs a decision.
- Unprotected accounts are found weekly instead of at audit time
- Every gap becomes a tracked card with an owner
- The coverage trend builds up in Notion week by week
Built for IT administrators · security teams · compliance managers · MSPs
What does WebRun do on every run?
The exact actions WebRun takes, in order - in plain language, so you can adjust anything.
-
WebRun signs in and gets to work
Opens
admin.duosecurity.comin a real browser with your saved login - no setup, no API keys. -
1
Duo Security - review users and enrolled devices
WebRun opens Duo Security to review users and enrolled devices. - Sign into the Duo Admin Panel and open the Users list
- Capture users with no enrolled authentication device
- Capture accounts in a bypass state and note how long they have been there
- Check the authentication log for users with no successful authentication in the last 90 days
Done when Every user with a coverage gap is listed with the reason and how long it has applied.
-
2
Notion - write the coverage register
WebRun opens Notion to write the coverage register. - Open your Notion security register page
- Write this week's table: user, group, gap type, and days in that state
- Keep prior weeks below so the trend is visible
- Highlight any account that has carried the same gap for more than 30 days
Done when This week's coverage register is written into Notion.
-
3
Trello - open a card per account to fix
WebRun opens Trello to open a card per account to fix. - Open your security board
- Create a card for each account that needs enrolment, review, or removal
- Put the gap type, the days in state, and the owning team in the card description
- Close cards for accounts that no longer appear in the register
Done when Every open coverage gap has a card on the security board.
How is each run configured?
Secure by default
Connect once, stays signed in
WebRun signs in once and keeps each session in a persistent environment, so every run picks up right where it left off.
Every action is checked against this policy before it runs.
Questions, answered
Will it disable or delete Duo accounts?
No. WebRun reads the Duo Admin Panel and changes nothing. Every account that needs enrolment, review, or removal becomes a Trello card for an administrator to action by hand.
Does it message the users it finds?
No. Findings go only to your Notion register and your Trello security board. Any message asking someone to enrol is left for your team to write and send.
What counts as a dormant account?
No successful authentication in 90 days, and you can change that window. Dormant accounts are listed separately from unenrolled ones so the two problems do not get mixed up.
Put this on autopilot.
Turn it on in minutes - or have our team set it up for you.