For MSPs, consultancies and Microsoft 365 administrators

The PowerShell assessment package for professional Microsoft 365 security reviews.

Review up to 53 control areas, collect traceable technical evidence and deliver a customer-ready HTML report. The workflow is read-only by design and does not require a recurring SaaS subscription.

View installation and usage
53 control areas Full PowerShell source code Customer-ready reporting
assessment_contoso.html
Read-onlyDemo report
Technical assessmentContoso GmbH
RUN GSE-8F21
Technical score72/100
31Passed
6Failed
8Not tested
IAM-01
Admin MFA coverage is incompleteTwo privileged accounts are outside the effective policy.
Critical
COL-01
External sharing is too broadAnonymous links remain available on sensitive sites.
Warning
18:42:11WARNING

DEV-02 not tested – Intune data source unavailable

Fictional demo data. The generated report may change technically and visually with future product versions.

Read-only by designNo write operations in the assessment workflow.
Source code includedNo mandatory SaaS lock-in.
Not tested is not passedMissing licences and permissions remain visible.
Customer-ready reportWhite labelling from Professional upwards.
Version 0.18.0 verified

Tested with a real tenant run, controlled changes and a 53-control report review.

The published verification report separates confirmed functions, scope-limited claims and explicit limitations. The final run contained 0 internal evaluation errors; unavailable data was not counted as passed.

53/53 controls rendered4/4 changes detectedSHA-256 outputs verified
Read the test report
Customer-ready output

Management summary, control results, evidence and run log.

The report separates executive information from technical detail so that decision-makers and administrators can use the same deliverable.

01

Management summary

Score, test coverage, major risks and prioritised actions.

02

Control results

Status, reason and recommendation for every control.

03

Technical evidence

Data source, relevant values and documented testing limitations.

04

Run log

Connections, data collection, missing permissions, licences and exports.

See the report before buying.

The live demo uses the same sample values as the landing-page preview.

Open live report
Three plans · one-time payment

Choose the licence scope that matches your business.

All plans include the same technical assessment engine. They differ in customer scope, internal users, white-labelling rights and update period.

Independent consultant

Consultant

For a limited, stable customer base.

€499net
one-time
  • up to 5 active customer tenants
  • 1 internal user
  • commercial use of generated reports
  • source code and all exports
  • 6 months of updates
Choose Consultant
Larger internal team

Team

For multiple engineers, locations or dedicated security teams.

€1,299net
one-time
  • unlimited own customer tenants
  • up to 15 internal users
  • central use within one company
  • white-labelling and all exports
  • 24 months of updates
Choose Team
Disclaimer

GraphSec supports technical assessment. Professional judgement remains with the user.

Results depend on scan time, tenant configuration, licences, read permissions, Microsoft APIs and manual evidence. The product is not legal advice, a certification or a complete NIS2, BSI, ISO 27001 or GDPR assessment.

Read the full disclaimer