> ## Documentation Index
> Fetch the complete documentation index at: https://docs.oleria.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Detect and report Shadow IT

> Identify newly detected shadow IT applications and create incident tickets in your connected ITSM tool automatically.

The **Detect and report Shadow IT** workflow identifies newly detected shadow IT applications and creates an incident ticket in your connected ITSM tool automatically, so unsanctioned applications get triaged without someone monitoring for them manually.

<Note>
  Shadow IT applications are detected through [Application Hygiene](/governance/application-hygiene-overview). This workflow automates the follow-up action once a new one is detected.
</Note>

## How this workflow is built

<Steps>
  <Step title="Trigger">
    Set a schedule for the workflow to run - for example, every Monday at 9:00 AM UTC.
  </Step>

  <Step title="Get Shadow IT applications">
    Scope the workflow to all detected applications, or narrow it to a specific set.
  </Step>

  <Step title="Configure ticket">
    Choose the connected ITSM tool to create the ticket in, such as ServiceNow.
  </Step>

  <Step title="Notifications">
    Choose where to send a notification alongside the ticket - for example, email and Microsoft Teams.
  </Step>
</Steps>

## Build details

| Field       | Description                                 |
| :---------- | :------------------------------------------ |
| Description | A short summary of what the workflow does.  |
| Created by  | The user who created the workflow.          |
| Created on  | The date and time the workflow was created. |

## Reviewing runs

Select the **Runs** tab to see the workflow's execution history - when it ran, which applications it found, and which tickets it created.

## Contact us

For questions, contact us at [support@oleria.com](mailto:support@oleria.com).
