PIM-Global v2.0.0
PIM-Global v2.0.0
Overview
PIM-Global is a lightweight, secure desktop utility designed to streamline Entra ID Privileged Identity Management (PIM) role activation across global tenants.
This release introduces a standalone executable (PIM-Global.exe) that enables IT administrators and support personnel to easily:
✅ Authenticate via Microsoft.Graph with MSAL
✅ Activate eligible PIM roles in their assigned tenants
✅ View activation details such as role names and expiration
✅ Receive clear, color-coded feedback for MFA prompts, success messages, errors, and session states
Key Features
⚡ No PowerShell Required – All functionality is wrapped in a native executable
🌍 Multi-Tenant Support – Designed for distributed IT teams across regions
🧠 MSAL Integration – Uses modern authentication with embedded web view disabled for compatibility
🎨 Colorized Output – Enhanced CLI feedback to guide the user through each step
🛠️ Built for Your Tenant – Configured for global use and any tenant
System Requirements
- Windows 10/11 (x64)
- .NET Desktop Runtime 6.0+ (if applicable)
- Entra ID account with eligible PIM roles
Installation
- Download
PIM-Global.exebelow - Run as a standard user (no admin rights needed)
- Follow the interactive prompts
Notes
This app is intended for internal distribution. Ensure your account meets the role eligibility requirements in Entra AD PIM.
This script will automatically install the required PowerShell modules if they are not already present:
MSAL.PSfor interactive loginMicrosoft.Graphfor role management
No administrative privileges are required. However:
- Internet access must be available
- Script execution must be permitted
🧠 Example
🟢 Run EXE
Launch the standalone executable and begin authentication.
👤 Select Your Account
Choose the Entra ID account with eligible roles.

🔑 Passkey Interaction
Respond to the passkey prompt using platform authentication.
📷 Scan QR Code
Complete the device sign-in by scanning the QR code with your mobile authenticator.
✅ MFA Confirmation
Verify the device connection and wait for session confirmation.
🎭 Role Retrieval
View your eligible PIM roles retrieved from Microsoft Graph.
🧾 Selecting Your Role
Enter the number corresponding to the role you want to activate.
⏳ Role Duration
Input your desired activation time within allowed limits.
📝 Enter Reason for Activation
Justify your request in compliance with PIM policy.
🟖️ Role Activation Complete
Receive confirmation including role name and expiration time.
Full Changelog: v1.0.0...v1.0.0