Harbour ITMenu

Powered by Office Sentry 2.2.0

You're in the demo. Three fictional clients with made-up people. Look around freely: nothing can be changed, and it all resets every night.Get Office Sentry
Clients/Fabrikam Dental Group

Fabrikam Dental Group

fabrikam.onmicrosoft.com
Monthly review

Connection

Healthy
Tenant ID
fabrikam.onmicrosoft.com
App
Demo app
Admin consent
Granted

Connection health, permissions and settings

Licences found

Decides which checks can run
  • Defender for Office 365 P1
  • Defender for Office 365 P2
  • Entra ID P1
  • Entra ID P2
  • Exchange Online
  • Intune
  • SharePoint Online

Greyed-out features aren't licensed, so the checks that need them show as "not checked".

Data sources

37 of 38 collected fine · 1 to look at · collected automatically every night
SourceStatusLast collected
Automatic repliesWhich mailboxes have an out-of-office reply on or scheduled, and who it goes to. Could not read automatic replies for 53 of 57 mailboxes Partial
Show the 37 that collected fine
SourceStatusLast collected
Tenant profile and licencesOrganization details, verified domains, subscriptions with renewal dates and licence capabilities. Succeeded
Connection and permissionsWhether the app's permissions are granted in this tenant and it holds the Global Reader role. Succeeded
UsersMembers and guests with licences (and whether each comes directly or from a group), password age and last sign-in (sign-in needs Entra ID P1). Succeeded
Admin rolesWho holds each directory role, active and PIM-eligible. Succeeded
Conditional AccessConditional Access policies and the Security Defaults setting. Succeeded
MFA registrationWhich users have registered a second factor. Succeeded
Per-user MFAThe per-user MFA setting on each member, for tenants without Entra ID P1. Succeeded
Secure ScoreCurrent Secure Score, per-control scores and up to 90 days of daily history. Succeeded
Sign-in methods policyWhich sign-in methods the tenant allows and for whom, the registration campaign and system-preferred MFA. Succeeded
Admin activityAdmin role, Conditional Access, app credential, consent, domain and account changes from the directory audit log, kept in the activity history (Microsoft keeps 30 days with Entra ID P1, otherwise 7). Succeeded
Apps and consentsThird-party apps, the permissions granted to them, and app secrets or certificates expiring. Succeeded
Sharing and consent settingsGuest invitations, user consent to apps, default user permissions, admin consent requests, and SharePoint external sharing. Succeeded
Groups and TeamsEvery group, the owners, members and guests of each team and Microsoft 365 group, who can create them and whether unused ones expire. Succeeded
Deleted users and groupsUsers and Microsoft 365 groups in the Entra ID recycle bin, and how many days are left to restore each before Microsoft deletes it for good. Succeeded
MailboxesMailboxes, forwarding, delegated access and organisation mail settings (needs Global Reader). Succeeded
Inbox rulesEvery mailbox's inbox rules, to spot forwarding and rules that hide mail. Succeeded
Sign-in activityInteractive sign-ins in the last 7 days, summarised by account, country, app and failure reason (needs Entra ID P1; sign-in risk needs P2). Succeeded
Mailbox sizeSize and item count of every mailbox, against its quota (needs Global Reader). Succeeded
Legacy sign-insSign-ins over SMTP AUTH, IMAP, POP and other basic-auth clients in the last 30 days (needs Entra ID P1). Succeeded
Mobile devicesPhones and tablets that sync mail, and when each last synced (needs Global Reader). Succeeded
Distribution listsEvery distribution list, its owners and members, and how much mail it gets (needs Global Reader). Succeeded
Risky usersAccounts Entra ID Protection rates at risk or confirmed compromised, and those resolved in the last 90 days (needs Entra ID P2). Succeeded
Email domainsSPF, DMARC, DKIM, MTA-STS and TLS-RPT for each verified domain, checked in public DNS. Succeeded
DevicesDevices registered or joined to Entra ID, and Intune compliance, encryption and check-in for managed devices (needs Intune). Succeeded
Directory syncWhether accounts are synced from on-premises Active Directory, when directory and password hash sync last ran, and how each domain signs in and how often its passwords expire. Succeeded
SharePoint and OneDrive usageEvery site and OneDrive with storage, activity and sharing link counts, from Microsoft's usage reports. Succeeded
Shared filesEvery file and folder in SharePoint and OneDrive shared with anyone, the whole organisation, people outside it, or given its own permissions. Needs the Sites.Read.All permission. Succeeded
SharePoint storageWhat fills each site's storage: libraries, folders, large and old files, version history and recycle bins. Needs the Sites.Read.All permission. Succeeded
Site accessWho owns, administers and can reach each SharePoint site: group owners and site admins, guests, what the default library grants, and sites open to everyone. Needs the Sites.Read.All permission. Succeeded
Site permissionsPermission levels on each SharePoint site, SharePoint groups and their members, and lists, libraries and subsites with permissions of their own. Needs Sites.Read.All on SharePoint (not Graph). Succeeded
Microsoft 365 usageWho used email, Teams, OneDrive, SharePoint and the Office apps in the last 30 days, from Microsoft's usage reports. Succeeded
TeamsEach team's channels, the guests and people from other organisations in private and shared channels, the apps added to each team, and when each team was last used. Succeeded
Mail flowHow much mail each domain sends and receives, how much is delivered, sent to Junk, quarantined or failed, and who gets the most spam and phishing (needs Global Reader). Succeeded
App sign-insWhen each enterprise app last signed in, for a person or on its own (needs Entra ID P1). Succeeded
Group nestingHow many members each security group and distribution list has, the groups inside each, and dynamic membership rules. Succeeded
Departments and managersEach account's department, job title, office, company and manager. Succeeded
Administrative unitsEvery administrative unit, whether it is assigned or dynamic and restricted, and the users, groups and devices in each. The admins scoped to each unit come from Admin roles. Succeeded

Recent runs

Last 50
SourceStatusStarted byWhenItems
Administrative units Succeeded Manual 4
Departments and managers Succeeded Manual 55
Group nesting Succeeded Manual 15
App sign-ins Succeeded Manual 4
Mail flow Succeeded Manual 12
Teams Succeeded Manual 6
Microsoft 365 usage Succeeded Manual 59
Site permissions Succeeded Manual 9
Site access Succeeded Manual 9
SharePoint storage Succeeded Manual 722
Shared files Succeeded Manual 71
SharePoint and OneDrive usage Succeeded Manual 64
Directory sync Succeeded Manual 4
Devices Succeeded Manual 113
Email domains Succeeded Manual 2
Risky users Succeeded Manual 1
Distribution lists Succeeded Manual 15
Automatic replies Partial Manual 5
Mobile devices Succeeded Manual 97
Legacy sign-ins Succeeded Manual 3
Mailbox size Succeeded Manual 59
Sign-in activity Succeeded Manual 178
Inbox rules Succeeded Manual 18
Mailboxes Succeeded Manual 140
Deleted users and groups Succeeded Manual 6
Groups and Teams Succeeded Manual 17
Sharing and consent settings Succeeded Manual 3
Apps and consents Succeeded Manual 10
Admin activity Succeeded Manual 20
Sign-in methods policy Succeeded Manual 8
Secure Score Succeeded Manual 112
Per-user MFA Succeeded Manual 1
MFA registration Succeeded Manual 55
Conditional Access Succeeded Manual 3
Admin roles Succeeded Manual 12
Users Succeeded Manual 55
Connection and permissions Succeeded Manual 1
Tenant profile and licences Succeeded Manual 8
Administrative units Succeeded Manual 4
Departments and managers Succeeded Manual 53
Group nesting Succeeded Manual 15
App sign-ins Succeeded Manual 4
Mail flow Succeeded Manual 12
Teams Succeeded Manual 6
Microsoft 365 usage Succeeded Manual 57
Site permissions Succeeded Manual 9
Site access Succeeded Manual 9
SharePoint storage Succeeded Manual 720
Shared files Partial Manual 66
SharePoint and OneDrive usage Succeeded Manual 62