Skip to main content
Category: Microsoft 365 Administration · View source ↗
Connectors: IT Glue Role: Technician, Security & Compliance Owner Outcome: Risk & Compliance When to use: A ticket asks “who can read/send from <mailbox>,” a periodic client security review needs a delegation inventory, an offboarding sweep needs to know what the departing user had access to (and who has access to theirs), or a user reports “someone read/sent my email” — inventory first, then hand proven-misuse questions to delegate-access-forensics. Produce a complete, honest map: every grant type enumerated, each classified expected or unexpected, findings documented so someone can act. Never revoke within the audit itself. Run it: on a single mailbox, or as a tenant-wide sweep — you prepare the collection and classify, a technician runs and pastes back the results (not a Flow: it needs a human at the console).

Prompt