Graften Docsgraften.io
Docs / Integration Guides / Microsoft 365 / InfraAudit

Microsoft 365 / InfraAudit

Integration guide

InfraAudit's Microsoft 365 collection uses delegated Microsoft Graph permissions via a client's own admin consent — Graften never stores a client's M365 admin password.

Setup

  1. From the client's record, go to Connections → Add Connection → Microsoft 365.
  2. You'll be sent through Microsoft's admin consent flow for the client's tenant. The client's own Global Admin (or someone with sufficient delegated permissions) needs to approve this — it can't be done on their behalf without their tenant access.
  3. Once consented, POST /api/v1/audit/run with that client's ID kicks off a real audit using Microsoft Graph, Exchange Online, and Teams APIs to inventory users, licensing, mailboxes, Conditional Access policies, and admin roles.

Common setup issues

Open in the interactive docs