Prioritized risks
Start with the exposures that carry the most privilege, reach, and blast radius—not an unranked configuration export.

Run a read-only assessment of your tenant and get prioritized findings, affected users and apps, supporting evidence, and recommended fixes.
No credit card. Microsoft administrator consent is required for the read-only Audit connection.
The free assessment turns Microsoft 365 evidence into a short, defensible action list. You see value in your own environment before choosing a paid plan.
Start with the exposures that carry the most privilege, reach, and blast radius—not an unranked configuration export.
See the accounts, permissions, policies, and applications connected to each finding.
Understand why the issue matters, what AuthMargin observed, and the recommended corrective action.
AuthMargin separates read-only assessment access from Protect permissions. The free journey requests Audit Mode only, keeps Microsoft as the system of record, and never performs a tenant change.
The assessment is the entry point. Paid plans add the controls that help internal IT teams and MSPs investigate, remediate, verify, and monitor change safely.
Every risk stays connected to its affected scope, evidence source, freshness, and Microsoft license context.
Protect Mode is separate and opt-in. Supported changes require exact targets, safeguards, approval, and verification.
Rapid Watch checks high-value identity, OAuth, policy, application, and device changes between full assessments.
Portfolio views, tenant isolation, technician workflows, and staged baselines support authorized multi-tenant work.
Run the read-only assessment now, or inspect the synthetic sample first. No credit card is required for the initial assessment.