Frequently asked questions
Straight answers about safety, data handling, licensing, and support.
- What is 365Posture?
- A Microsoft 365 security posture assessment service. You purchase an assessment for one or more workloads (Entra ID, Exchange Online, Intune, Purview, SharePoint, Teams, or Defender for M365), run a PowerShell collector script inside your own tenant, and receive a scored PDF report with findings and remediation guidance.
- Is it safe to run against our production tenant?
- The collector requests read-only Microsoft Graph API permissions only — no write access is ever requested. You approve the exact permission list on Microsoft’s own Entra admin consent screen before anything runs, and you can review the full list in advance on our Permissions page.
- What data actually leaves our tenant?
- Only tokenised, encrypted data. Before anything is written for upload, the collector replaces sensitive values — user names, admin emails, tenant domain and ID, policy and group names — with structured tokens (like user1@domain.com) on your own machine. The mapping between tokens and real values is saved locally only and is never uploaded. See the Security page for the full token schema.
- Does 365Posture ever see our real tenant data?
- No. 365Posture servers only ever process tokenised, anonymised data. The encrypted artifact you upload is deleted immediately after scoring. On the Advanced tier, the AI model that writes your executive summary also receives tokenised data only.
- What licenses do we need?
- Requirements vary by workload — for example, some Entra ID controls require Entra ID P2, and Intune/Purview controls depend on your existing M365 licensing. The collector detects your licenses automatically and each report clearly flags any control that could not be evaluated due to a missing license.
- What do we need installed to run the collector?
- PowerShell 7 (pwsh). The setup script installs any required PowerShell modules automatically. You run one command; it handles app registration, admin consent, data collection, tokenisation, and upload.
- How long does it take?
- The collector run itself typically takes a few minutes per workload. Your scored PDF report is emailed within minutes of the tokenised artifact being uploaded and scored.
- What’s the difference between Basic and Advanced?
- Basic includes a scored PDF report with remediation guidance. Advanced adds an AI-generated executive summary and remediation roadmap, built entirely from your tokenised results.
- Who can I contact for support, billing, or report issues?
- support@365posture.net for general questions, reports@365posture.net for report delivery issues, and billing@365posture.net for payment, invoice, or refund questions. See the Contact page for details.
Still have a question?
Contact us