Enforces device compliance requirements for accessing Citrix DaaS and Secure Private Access resources by classifying devices as compliant, non-compliant, or denied login based on predefined policies. Checks endpoint attributes such as OS versions, registry settings, and security posture, supporting platforms like Windows, macOS, iOS, and IGEL. The service integrates with tools like Microsoft Endpoint Manager and CrowdStrike for enhanced security assessments. Using a lightweight client, it evaluates device posture during pre-authentication, enabling zero-trust access controls and contextual access decisions.