Snapshot Conditional Access, Intune, Exchange, Teams, Defender, Power Platform configurations. Git-diffable JSON. Zero-knowledge by default.
Frequently asked questions
What does configuration export back up?
Nine workloads: Exchange Online, SharePoint, Teams, OneDrive, Entra ID (users/groups/roles), Conditional Access, Intune, Purview and tenant-wide settings.
Is this an alternative to Microsoft365DSC?
Yes — without writing PowerShell DSC. Microsoft365DSC is a free open-source IaC tool that requires weeks of setup. GTools.pro Blueprint produces the same kind of full-tenant snapshot via a UI with per-export history and delta reports.
How does this relate to Microsoft UTCM?
UTCM is in preview with no GA pricing announced and runs on Microsoft infrastructure. Blueprint runs locally on Desktop (or zero-knowledge on Cloud) and exports today with no preview gating.
Can I get delta reports between exports?
Yes. Per-export history and per-workload delta reports are first-class outputs.
Blueprint export limitations — what it is not for
Blueprint emits a JSON snapshot of the tenant configuration surfaces exposed by Microsoft Graph — Conditional Access policies, Intune device configurations, Entra ID role assignments, retention labels, SharePoint site templates. Settings stored outside Graph (legacy Exchange admin center policies, classic SharePoint farm settings) fall outside the export envelope.
Apply / restore is a manual operation. Blueprint never writes back to the tenant: the exported JSON is the source of truth that an administrator reviews and reapplies via PowerShell, Microsoft Graph SDK, or Microsoft365DSC. This is a documentation and version-control tool, not a drift-detection-and-remediation engine.