Rolling out Copilot? Run this check first. It reads everything your staff can.

Free · read-only · the whole tenant

See everything your Microsoft 365 is exposing.

A thorough, read-only security & configuration audit across six areas: identity, devices, SharePoint, email, data and Copilot. You grant a temporary, read-only role (such as Global Reader) for a scheduled window; we run the scan and retain nothing. Prefer to run it yourself? Use our sealed tool instead.

  • Temporary read-only access
  • A scheduled window; we retain nothing
  • Report and readout within a few working days

Request your health-check

No cost. No sales call required.

Or see a sample report first, no email needed.

Six areas we assess

Distilled to what matters, not a settings dump

Identity & access

MFA coverage · Legacy auth · Admin roles · Conditional access

Devices · Intune

Enrolment · Compliance · Encryption · Unmanaged devices

SharePoint & sharing

Link scope & expiry · External access · Org-wide access · Permissions

Email security

SPF · DKIM · DMARC · Anti-phishing

Data protection

Sensitivity labels · DLP · Retention · Oversharing

Copilot readiness

What Copilot can surface · Broadly shared content · Label coverage

Why it's different

Most security reviews cost thousands, or want standing access to everything.

There are really three ways to find this out today: run a free script and interpret it yourself, pay for a governance platform that connects to your tenant and keeps your data in its cloud, or buy a Microsoft add-on and read the dashboards yourself. Ours is the missing fourth: free, broad, and actually delivered. You grant a temporary, read-only role (such as Global Reader) for a scheduled window, we hand you a plain-English report of where you stand and what to harden, then your access expires. Nothing of yours stays with us, and you stay in control.

Free

Not a paid platform, an E5 add-on, or a consultancy day rate.

Temporary read-only role

Not a standing connection with your data parked in a vendor cloud.

Delivered and explained

A plain-English white paper and a readout, not a script you decode alone.

The report

Not another Secure Score dump.

Microsoft Secure Score buries the signal under hundreds of granular toggles. Ours surfaces the security-critical configurations, their current state, and what to harden first, so you see your posture in minutes, not a spreadsheet to wade through.

  • Only the configurations that actually move your security posture
  • Each shown with its state: solid, or needs hardening
  • Prioritised High → Low, so you know what to fix first
  • Plain English. Readable in minutes, by humans.
M365 Security Health-Check · Acme Ltd read-only
58/100 needs work
Anonymous links11 High
Legacy authenticationHigh
Unmanaged devices7 Med

“11 sites open to the whole company.” A real first finding.

Temporary read-only access We retain nothing Or run our sealed tool yourself
Get started →