AssetSort

INT · Integrations

Connecting Microsoft 365

Step-by-step, including the admin consent screen.

6 min read

AssetSort connects to Microsoft 365 with a tenant-wide connection that a Global Administrator approves once. The sync itself is read-only: it pulls that tenant's licences, directory users, Intune and Entra devices, Entra groups, app-registration credentials and MFA/risk signals into AssetSort, and writes nothing back. (The one place AssetSort can act on the tenant is the optional remote Intune device actions on a device's page — see the FAQ below.) The integration requires the Growth plan or above; a managed client inherits its MSP's plan. One Microsoft 365 tenant can be connected to one AssetSort organisation at a time.

  1. 01

    Open Settings → Integrations

    From the sidebar, go to Settings, then Integrations under the Platform section. You'll see the Microsoft 365 card with a Connect button.

  2. 02

    Select Connect

    This opens Microsoft's own sign-in and consent flow in a redirect — AssetSort never sees your Microsoft password.

  3. 03

    Sign in and approve as a Global Administrator

    Connecting requires a one-time approval by the tenant's Global Administrator. If you hold the client's admin login, continue to Microsoft and approve it yourself. If the client holds the keys, use "Copy consent link" instead and send them the link — they approve in their own browser and this page updates automatically once they do. Consent links are single-use.

  4. 04

    You're redirected back, already connected

    Once approved, you land back on the Integrations page with the connection active and the first sync running. Licences, people, devices, groups and app credentials all populate on that first pass; it usually completes within a few minutes.

Questions people ask